{"api_version":"1","generated_at":"2026-07-23T05:13:32+00:00","cve":"CVE-2002-2265","urls":{"html":"https://cve.report/CVE-2002-2265","api":"https://cve.report/api/cve/CVE-2002-2265.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2002-2265","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2002-2265"},"summary":{"title":"CVE-2002-2265","description":"Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown attack vectors.","state":"PUBLISHED","assigner":"mitre","published_at":"2002-12-31 05:00:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["CWE-264","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"6.4","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/bid/6174","name":"http://www.securityfocus.com/bid/6174","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch"],"title":"HP Tru64/TruCluster OSIS V5.4 LDAP Module Unauthorized File Access Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10703","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10703","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://archives.neohapsis.com/archives/compaq/2002-q4/0014.html","name":"http://archives.neohapsis.com/archives/compaq/2002-q4/0014.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Neohapsis Archives - Compaq Products - [security bulletin] SSRT2385 OSIS V5.4 LDAP Module for System Authentication Potential Security Vulnerability - From Rich.Boren_at_hp.com","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2002-2265","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2002-2265","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2002","cve_id":"2265","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"hp","cpe5":"tru64","cpe6":"4.0f","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2002","cve_id":"2265","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"hp","cpe5":"tru64","cpe6":"4.0g","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2002","cve_id":"2265","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"open_source_internet_solutions","cpe5":"open_source_internet_solutions","cpe6":"5.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-08T03:59:11.558Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"tru64-osis-ldap-file-access(10703)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10703"},{"name":"SSRT2385","tags":["vendor-advisory","x_refsource_HP","x_transferred"],"url":"http://archives.neohapsis.com/archives/compaq/2002-q4/0014.html"},{"name":"6174","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/6174"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2002-11-13T00:00:00.000Z","descriptions":[{"lang":"en","value":"Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown attack vectors."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-07-28T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"tru64-osis-ldap-file-access(10703)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10703"},{"name":"SSRT2385","tags":["vendor-advisory","x_refsource_HP"],"url":"http://archives.neohapsis.com/archives/compaq/2002-q4/0014.html"},{"name":"6174","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/6174"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2002-2265","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown attack vectors."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"tru64-osis-ldap-file-access(10703)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/10703"},{"name":"SSRT2385","refsource":"HP","url":"http://archives.neohapsis.com/archives/compaq/2002-q4/0014.html"},{"name":"6174","refsource":"BID","url":"http://www.securityfocus.com/bid/6174"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2002-2265","datePublished":"2007-10-18T10:00:00.000Z","dateReserved":"2007-10-17T00:00:00.000Z","dateUpdated":"2024-08-08T03:59:11.558Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2002-12-31 05:00:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["CWE-264","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:N","baseScore":6.4,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":4.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:o:hp:tru64:4.0f:*:*:*:*:*:*:*","matchCriteriaId":"3E8BA552-394A-4E06-8CAD-24A2F542FD91"},{"vulnerable":false,"criteria":"cpe:2.3:o:hp:tru64:4.0g:*:*:*:*:*:*:*","matchCriteriaId":"E43FAAEF-B0DD-466F-A74E-43CBA4CCF7E7"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:open_source_internet_solutions:open_source_internet_solutions:5.4:*:*:*:*:*:*:*","matchCriteriaId":"3403A298-C680-421F-AE92-9F62834A8976"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2002","CveId":"2265","Ordinal":"1","Title":"CVE-2002-2265","CVE":"CVE-2002-2265","Year":"2002"},"notes":[{"CveYear":"2002","CveId":"2265","Ordinal":"1","NoteData":"Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown attack vectors.","Type":"Description","Title":"CVE-2002-2265"},{"CveYear":"2002","CveId":"2265","Ordinal":"2","NoteData":"2007-10-18","Type":"Other","Title":"Published"},{"CveYear":"2002","CveId":"2265","Ordinal":"3","NoteData":"2017-07-28","Type":"Other","Title":"Modified"}]}}}