Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2002-03-25 CVE-2002-0144 Unspecified vulnerability in Scott Parish Chuid 1.0/1.1/1.2
Directory traversal vulnerability in chuid 1.2 and earlier allows remote attackers to change the ownership of files outside of the upload directory via a ..
network
low complexity
scott-parish
7.5
2002-03-25 CVE-2002-0142 Buffer Overflow vulnerability in PI3 Pi3Web 2.0
CGI handler in John Roy Pi3Web for Windows 2.0 beta 1 and 2 allows remote attackers to cause a denial of service (crash) via a series of requests whose physical path is exactly 260 characters long and ends in a series of .
network
low complexity
pi3
7.5
2002-03-25 CVE-2002-0140 Denial Of Service vulnerability in DNRD DNS Request/Reply
Domain Name Relay Daemon (dnrd) 2.10 and earlier allows remote malicious DNS sites to cause a denial of service and possibly execute arbitrary code via a long or malformed DNS reply, which is not handled properly by parse_query, get_objectname, and possibly other functions.
network
low complexity
dnrd
7.5
2002-03-25 CVE-2002-0139 Unspecified vulnerability in Pi-Soft Spoonftp
Pi-Soft SpoonFTP 1.1 and earlier allows remote attackers to redirect traffic to other sites (aka FTP bounce) via the PORT command.
network
low complexity
pi-soft
7.5
2002-03-25 CVE-2002-0137 Symbolic Link vulnerability in CDRDAO Home Directory Configuration File
CDRDAO 1.1.4 and 1.1.5 allows local users to overwrite arbitrary files via a symlink attack on the $HOME/.cdrdao configuration file.
local
low complexity
andreas-mueller
7.2
2002-03-25 CVE-2002-0134 Remote SYSTEM Access vulnerability in Avirt Gateway Suite 4.2
Telnet proxy in Avirt Gateway Suite 4.2 does not require authentication for connecting to the proxy system itself, which allows remote attackers to list file contents of the proxy and execute arbitrary commands via a "dos" command.
network
low complexity
avirt
7.5
2002-03-25 CVE-2002-0133 Remote Buffer Overflow vulnerability in Avirt Gateway, Avirt Gateway Suite and Avirt Soho
Buffer overflows in Avirt Gateway Suite 4.2 allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long header fields to the HTTP proxy, or (2) a long string to the telnet proxy.
network
low complexity
avirt
7.5
2002-03-25 CVE-2002-0132 Buffer Overflow vulnerability in Chinput 3.0
Buffer overflow in Chinput 3.0 allows local users to execute arbitrary code via a long HOME environment variable.
local
low complexity
chinput
7.2
2002-03-25 CVE-2002-0130 Buffer Overflow vulnerability in EFax UUCP-style Lock File Command Line Option
Buffer overflow in efax 0.9 and earlier, when installed setuid root, allows local users to execute arbitrary code via a long -x argument.
local
low complexity
efax
7.2
2002-03-25 CVE-2002-0128 Denial Of Service vulnerability in Sambar Server 5.1
cgitest.exe in Sambar Server 5.1 before Beta 4 allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long argument.
network
low complexity
sambar
7.5