CVE-2002-0694
- EPSS 31.91%
- Published 10.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
The HTML Help facility in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP uses the Local Computer Security Zone when opening .chm files from the Temporary Internet File...
- EPSS 9.93%
- Published 04.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote attackers to delete digital certificates on a user's...
CVE-2002-0862
- EPSS 12.51%
- Published 04.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
The (1) CertGetCertificateChain, (2) CertVerifyCertificateChainPolicy, and (3) WinVerifyTrust APIs within the CryptoAPI for Microsoft products including Microsoft Windows 98 through XP, Office for Mac, Internet Explorer for Mac, and Outlook Express f...
CVE-2002-0724
- EPSS 73.04%
- Published 24.09.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in SMB (Server Message Block) protocol in Microsoft Windows NT, Windows 2000, and Windows XP allows attackers to cause a denial of service (crash) via a SMB_COM_TRANSACTION packet with a request for the (1) NetShareEnum, (2) NetServer...
CVE-2002-0725
- EPSS 0.7%
- Published 05.09.2002 04:00:00
- Last modified 03.04.2025 01:03:51
NTFS file system in Windows NT 4.0 and Windows 2000 SP2 allows local attackers to hide file usage activities via a hard link to the target file, which causes the link to be recorded in the audit trail instead of the target file.
- EPSS 7.42%
- Published 12.08.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large number of arguments to xdr_array ...
- EPSS 23.7%
- Published 12.08.2002 04:00:00
- Last modified 03.04.2025 01:03:51
IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) aexp3.htr , or (4) aexp4.htr.
CVE-2002-0366
- EPSS 0.56%
- Published 03.07.2002 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in Remote Access Service (RAS) phonebook for Windows NT 4.0, 2000, XP, and Routing and Remote Access Server (RRAS) allows local users to execute arbitrary code by modifying the rasphone.pbk file to use a long dial-up entry.
CVE-2002-0367
- EPSS 1.83%
- Published 25.06.2002 04:00:00
- Last modified 03.04.2025 01:03:51
smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges by duplicating a handle to a privileged process, a...
CVE-2002-0151
- EPSS 3.39%
- Published 04.04.2002 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in Multiple UNC Provider (MUP) in Microsoft Windows operating systems allows local users to cause a denial of service or possibly gain SYSTEM privileges via a long UNC request.