
CVE-2004-0336
https://notcve.org/view.php?id=CVE-2004-0336
01 Sep 2004 — LAN SUITE Web Mail 602Pro allows remote attackers to gain sensitive information via the mail login form, which contains the path to the mail directory. • http://archives.neohapsis.com/archives/bugtraq/2004-03/0096.html •

CVE-2004-0337 – Software602 602Pro LAN Suite - Web Mail Cross-Site Scripting
https://notcve.org/view.php?id=CVE-2004-0337
18 Mar 2004 — Cross-site scripting (XSS) vulnerability in LAN SUITE Web Mail 602Pro allows remote attackers to execute arbitrary script or HTML as other users via a URL to index.html, followed by a / (slash) and the desired script. NOTE: the vendor states that this bug could not be reproduced, so this issue may be REJECTed in the future. • https://www.exploit-db.com/exploits/23776 •

CVE-2002-1928
https://notcve.org/view.php?id=CVE-2002-1928
31 Dec 2002 — 602Pro LAN SUITE 2002 allows remote attackers to view the directory tree via an HTTP GET request with a trailing "~" (tilde) or ".bak" extension. • http://archives.neohapsis.com/archives/bugtraq/2002-10/0265.html •

CVE-2002-2152
https://notcve.org/view.php?id=CVE-2002-2152
31 Dec 2002 — The Czech edition of Software602's Web Server before 2002.0.02.0916 allows remote attackers to gain administrator privileges via direct HTTP requests to the /admin/ directory, which is not password protected. • http://online.securityfocus.com/archive/1/296119 •

CVE-2002-2174 – 602Pro LAN SUITE 2002 - Telnet Proxy localhost Denial of Service
https://notcve.org/view.php?id=CVE-2002-2174
31 Dec 2002 — The Telnet proxy of 602Pro LAN SUITE 2002 does not restrict the number of outstanding connections to the local host, which allows remote attackers to create a denial of service (memory consumption) via a large number of connections. • https://www.exploit-db.com/exploits/21694 •