Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2002-12-31 CVE-2002-2068 Incomplete Cleanup vulnerability in Tolvanen Eraser 5.3
Eraser 5.3 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
network
low complexity
tolvanen CWE-459
7.5
2002-12-31 CVE-2002-2067 Incomplete Cleanup vulnerability in East-Tec Eraser 2002
East-Tec Eraser 2002 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
network
low complexity
east-tec CWE-459
7.5
2002-12-31 CVE-2002-2066 Incomplete Cleanup vulnerability in Jetico Bcwipe 1.0.7/2.0/2.35.1
BestCrypt BCWipe 1.0.7 and 2.0 through 2.35.1 does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
network
low complexity
jetico CWE-459
7.5
2002-12-31 CVE-2002-2064 Unspecified vulnerability in PHPwebgallery 1.0
isadmin.php in PhpWebGallery 1.0 allows remote attackers to gain administrative access via by setting the photo_login cookie to pseudo.
network
low complexity
phpwebgallery
7.5
2002-12-31 CVE-2002-2063 Unspecified vulnerability in Atguard Personal Firewall 3.2
AtGuard 3.2 allows remote attackers to bypass firwall filters and execute prohibited programs by changing the filenames to permitted filenames.
network
low complexity
atguard
7.5
2002-12-31 CVE-2002-2061 Denial-Of-Service vulnerability in Netscape
Heap-based buffer overflow in Netscape 6.2.3 and Mozilla 1.0 and earlier allows remote attackers to crash client browsers and execute arbitrary code via a PNG image with large width and height values and an 8-bit or 16-bit alpha channel.
network
low complexity
mozilla netscape
7.5
2002-12-31 CVE-2002-2060 Buffer Overflow vulnerability in Twibright Labs Links 2.0Pre4
Buffer overflow in Links 2.0 pre4 allows remote attackers to crash client browsers and possibly execute arbitrary code via gamma tables in large 16-bit PNG images.
network
low complexity
twibright-labs
7.5
2002-12-31 CVE-2002-2058 Use of a Broken or Risky Cryptographic Algorithm vulnerability in Teekai Tracking Online 1.0
TeeKai Tracking Online 1.0 uses weak encryption of web usage statistics in data/userlog/log.txt, which allows remote attackers to identify IP's visiting the site by dividing each octet by the MD5 hash of '20'.
network
low complexity
teekai CWE-327
7.5
2002-12-31 CVE-2002-2054 Unspecified vulnerability in Teekai Forum 1.2
TeeKai Forum 1.2 allows remote attackers to authenticate as the administrator and and gain privileged web forum access by setting the valid_level cookie to admin.
network
low complexity
teekai
7.5
2002-12-31 CVE-2002-2049 Unspecified vulnerability in DUG Song Dsniff, Fragroute and Fragrouter
configure for Dsniff 2.3, fragroute 1.2, and fragrouter 1.6, when downloaded from monkey.org on May 17, 2002, has been modified to contain a backdoor, which allows remote attackers to access the system.
network
low complexity
dug-song
7.5