search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-09-27 2001-05-21 2002-09-27 VU#345576 Microsoft Word does not check for macros contained in linked template file when opening RTF document
2002-09-27 2001-06-21 2002-09-27 VU#295867 Microsoft Word does not adequately validate macros embedded within malformed Word documents
2002-09-27 2001-12-05 2002-09-27 VU#960267 Microsoft Windows 2000 fails to apply Group Policy to clients when policy file has been opened using exclusive read access (MS02-016)
2002-09-27 2002-02-21 2002-09-27 VU#462451 Microsoft Internet Explorer allows read access to local files via incorrect VBScript handling
2002-09-27 2001-05-23 2002-09-27 VU#187528 Microsoft Windows Media Player buffer overflow in Active Stream Redirector (.asx) file parser
2002-09-27 2000-11-22 2002-09-27 VU#675320 Microsoft Windows Media Player buffer overflow in Active Stream Redirector (.asx) file parser
2002-09-27 2000-11-10 2002-09-27 VU#829845 Microsoft Windows 2000 Indexing Services enumerates local file locations via ixsso.query ActiveX object
2002-09-27 2000-12-01 2002-09-27 VU#820957 Microsoft Internet Explorer 5.5 print template ActiveX control allows arbitrary command execution
2002-09-27 2001-05-23 2002-09-27 VU#739376 Microsoft Windows Media Player creates URL shortcut that may contain HTML code in known location in Local Computer Zone
2002-09-27 2001-05-10 2002-09-27 VU#910624 Microsoft Windows 2000 Indexing Service permits read access to files outside web root via crafted request
2002-09-27 2000-04-03 2002-09-27 VU#26493 MS Excel XLM Text Macro execution fails to trigger warning when default medium security set
2002-09-27 2001-10-13 2002-09-27 VU#921547 PostNuke does not adequately validate user input thereby allowing malicious user to bypass user authentication via SQL injection
2002-09-27 2001-06-07 2002-09-27 VU#771771 Shambala FTP Server does not adequately validate user input thereby allowing directory traversal
2002-09-27 2001-08-13 2002-09-27 VU#494307 SIX-webboard does not adequately validate user input thereby permitting directory traversal
2002-09-27 2001-10-15 2002-09-27 VU#341539 Novell GroupWise Server web-based front-end does not adequately validate user input thereby allowing directory traversal

Sponsored by CISA.