Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2002-1654

EPSS 1.85% · P83
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2002-1654

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
iPlanet Web Server Enterprise Edition and Netscape Enterprise Server 4.0 and 4.1 allows remote attackers to conduct HTTP Basic Authentication via the wp-force-auth Web Publisher command, which provides a distinct attack vector and may make it easier to conduct brute force password guessing without detection.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Netscape企业Web服务器蛮力授权攻击漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
iPlanet Web服务器企业版和 Netscape企业版服务器4.0和4.1版本存在漏洞。远程攻击者可以借助wp-force-auth Web Publisher命令执行HTTP基本认证,该漏洞提供不同的攻击向量并可能更容易在无探测时执行暴力密码猜测。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2002-1654

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2002-1654

Please Login to view more intelligence information

Same Patch Batch · n/a · 2005-03-28 · 26 CVEs total

CVE-2002-1647Slash Slashcode密码泄露漏洞
CVE-2005-0469多个Telnet客户端slc_add_reply() 缓冲区溢出漏洞
CVE-2005-0468Telnet客户端env_opt_add() 缓冲区溢出漏洞
CVE-2004-1773GNU Sharutils多个缓冲区溢出漏洞
CVE-2004-1772GNU Sharutils shar命令行解析缓冲区溢出漏洞
CVE-2002-1656X-News不安全用户数据库权限漏洞
CVE-2002-1655Netscape Enterprise Server Web Publisher拒绝服务攻击漏洞
CVE-2002-1653Cryptcat加密连接弱点
CVE-2002-1652CGIEmail远程缓冲区溢出漏洞
CVE-2002-1651Verity Search97错误页面跨站脚本漏洞
CVE-2002-1650SquirrelMail拼写检查器漏洞
CVE-2002-1649SquirrelMail对恶意HTML格式邮件处理的漏洞
CVE-2002-1648SquirrelMail对恶意HTML格式邮件处理的漏洞
CVE-2002-1634Netware下的Netscape Enterprise Web服务器信息泄露漏洞
CVE-2002-1646SSH Communications SSH AllowedAuthentications配置存在漏洞
CVE-2002-1645SSH Communications Secure Shell Windows客户端URLCatcher缓冲区溢出漏洞
CVE-2002-1644SSH Communications SSH Server权限提升漏洞
CVE-2002-1643Real Networks Helix Universal Server RTSP transport字段远程缓冲区溢出漏洞
CVE-2002-1642PostgreSQL VACUUM命令数据丢失漏洞
CVE-2002-1641Oracle Web Cache远程缓冲区溢出漏洞

Showing top 20 of 26 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2002-1654

No comments yet


Leave a comment