search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-09-27 2002-02-27 2003-10-09 VU#874115 Microsoft Windows SMTP Service fails to properly handle responses from the NTLM authentication layer
2002-09-27 2001-05-21 2002-09-27 VU#345576 Microsoft Word does not check for macros contained in linked template file when opening RTF document
2002-09-27 2001-01-01 2003-03-26 VU#879920 Microsoft Windows Media Player ActiveX control allows execution of javascript in "already open" frames
2002-10-01 2001-12-17 2002-10-02 VU#328163 Microsoft Windows XMLHTTP component allows remote access to local data sources
2002-10-01 2002-02-11 2002-10-01 VU#355971 Microsoft Internet Explorer executes scripts when scripting has been disabled after bypassing initial security checks
2002-10-01 1999-09-10 2002-10-01 VU#37556 InvokeRegWizard (regwizc.dll) ActiveX control has a buffer overflow
2002-10-01 1999-04-21 2002-10-16 VU#39965 DHTML Edit Control for IE5 allows local files to be uploaded to web server
2002-10-01 1999-09-10 2002-10-11 VU#40813 SetupCtl 1.0 Type Library contains a buffer overflow
2002-10-01 2002-07-19 2002-10-01 VU#438867 Adobe Acrobat eBook Reader allows users to circumvent copying and printing restrictions
2002-10-01 2002-10-01 2003-04-15 VU#738331 Domain Name System (DNS) resolver libraries vulnerable to read buffer overflow
2002-10-02 2002-09-25 2002-10-04 VU#723537 Microsoft SmartHTML interpreter (shtml.dll) contains vulnerability
2002-10-02 2002-10-02 2003-01-06 VU#383779 ZIP archives containing files with large filenames can cause buffer overflows
2002-10-03 2002-10-02 2002-10-03 VU#240329 Apache HTTPD server vulnerable to cross site scripting on error page when using wildcard DNS
2002-10-04 2002-10-02 2002-10-04 VU#840137 Microsoft Services for Unix 3.0 Interix SDK vulnerable to buffer overrun via RPC request containing improper parameter size check
2002-10-08 2002-10-07 2003-03-07 VU#328867 Multiple vendors' firewalls do not adequately keep state of FTP traffic

Sponsored by CISA.