Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2002-08-12 CVE-2002-0750 Remote Security vulnerability in csMailto
CGIscript.net csMailto.cgi program allows remote attackers to read arbitrary files by specifying the target filename in the form-attachment field.
network
low complexity
cgiscript-net
5.0
2002-08-12 CVE-2002-0748 Denial of Service vulnerability in National Instruments Labview 5.1.1/6.0/6.1
LabVIEW Web Server 5.1.1 through 6.1 allows remote attackers to cause a denial of service (crash) via an HTTP GET request that ends in two newline characters, instead of the expected carriage return/newline combinations.
network
low complexity
national-instruments
5.0
2002-08-12 CVE-2002-0741 Denial Of Service vulnerability in Psychoid Psybnc 2.3
psyBNC 2.3 allows remote attackers to cause a denial of service (CPU consumption and resource exhaustion) by sending a PASS command with a long password argument and quickly killing the connection, which is not properly terminated by psyBNC.
network
low complexity
psychoid
5.0
2002-08-12 CVE-2002-0737 Unspecified vulnerability in Sambar Server 5.1
Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.
network
low complexity
sambar
6.4
2002-08-12 CVE-2002-0729 Unspecified vulnerability in Microsoft SQL Server 2000
Microsoft SQL Server 2000 allows remote attackers to cause a denial of service via a malformed 0x08 packet that is missing a colon separator.
network
low complexity
microsoft
5.0
2002-08-12 CVE-2002-0728 Unspecified vulnerability in Greg Roelofs Libpng 1.0.14/1.2.4
Buffer overflow in the progressive reader for libpng 1.2.x before 1.2.4, and 1.0.x before 1.0.14, allows attackers to cause a denial of service (crash) via a PNG data stream that has more IDAT data than indicated by the IHDR chunk.
network
low complexity
greg-roelofs
5.0
2002-08-12 CVE-2002-0710 Unspecified vulnerability in ROD Clark Sendform.Cgi
Directory traversal vulnerability in sendform.cgi 1.44 and earlier allows remote attackers to read arbitrary files by specifying the desired files in the BlurbFilePath parameter.
network
low complexity
rod-clark
6.4
2002-08-12 CVE-2002-0659 Denial Of Service vulnerability in OpenSSL ASN.1 Parsing Error
The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial of service via invalid encodings.
network
low complexity
openssl oracle apple
5.0
2002-08-12 CVE-2002-0658 Privilege Escalation vulnerability in MM Shared Memory Library Temporary File
OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a symbolic link attack.
local
high complexity
ossp
6.2
2002-08-12 CVE-2002-0650 Denial of Service vulnerability in Microsoft SQL Server 2000
The keep-alive mechanism for Microsoft SQL Server 2000 allows remote attackers to cause a denial of service (bandwidth consumption) via a "ping" style packet to the Resolution Service (UDP port 1434) with a spoofed IP address of another SQL Server system, which causes the two servers to exchange packets in an infinite loop.
network
low complexity
microsoft
5.0