Vulnerability index

Browse CVEs

680 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Visual Basic HIGH 9.3
CVE-2007-4776EPSS 49%

Buffer overflow in Microsoft Visual Basic 6.0 and Enterprise Edition 6.0 SP6 allows user-assisted remote attackers to execute arbitrary code via a Vi…

No fix yet
Fix from $1,950 2007-09-10
Internet Explorer HIGH 7.5
CVE-2007-4790EPSS 55%

Stack-based buffer overflow in certain ActiveX controls in (1) FPOLE.OCX 6.0.8450.0 and (2) Foxtlib.ocx, as used in the Microsoft Visual FoxPro 6.0 f…

No fix yet
Fix from $1,950 2007-09-10
Msn Messenger HIGH 9.3
CVE-2007-2931EPSS 55%

Heap-based buffer overflow in Microsoft MSN Messenger 6.2, 7.0, and 7.5, and Live Messenger 8.0 allows user-assisted remote attackers to execute arbi…

No fix yet
Fix from $1,950 2007-08-31
Xml Core Services HIGH 9.3
CVE-2007-2223EPSS 49%

Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringData method on a (1) TextNode …

Patch available
Fix from $1,950 2007-08-14
Office HIGH 9.3
CVE-2007-2224EPSS 35%

Object linking and embedding (OLE) Automation, as used in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Office 2004 for Mac, and Visua…

Mitigation only
Fix from $1,950 2007-08-14
Directx Sdk MEDIUM 6.8
CVE-2006-4183EPSS 8%

Heap-based buffer overflow in Microsoft DirectX SDK (February 2006) and probably earlier, including 9.0c End User Runtimes, allows context-dependent …

Mitigation only
Fix from $1,600 2007-07-18
.net Framework HIGH 9.3
CVE-2007-0041EPSS 31%

The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute a…

Mitigation only
Fix from $1,950 2007-07-10
.net Framework HIGH 9.3
CVE-2007-0043EPSS 31%

The Just In Time (JIT) Compiler service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows user-assist…

Mitigation only
Fix from $1,950 2007-07-10
Excel MEDIUM 6.8
CVE-2007-1214EPSS 28%

Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2003 Viewer, and 2004 for Mac allows user-assisted remote attackers to execute arbitrary code via a cra…

Patch available
Fix from $1,600 2007-05-08
Windows 2000 HIGH 10.0
CVE-2007-1748EPSS 78%

Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 2000 Server SP 4, Server 2003 SP…

Mitigation only
Fix from $1,950 2007-04-13
Windows 2000 HIGH 9.3
CVE-2007-0038EPSS 73%

Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code…

Mitigation only
Fix from $1,950 2007-03-30
Windows Explorer HIGH 7.1
CVE-2007-1347EPSS 30%

Microsoft Windows Explorer on Windows 2000 SP4 FR and XP SP2 FR, and possibly other versions and platforms, allows remote attackers to cause a denial…

No fix yet
Fix from $1,950 2007-03-08
Step By Step Interactive Training HIGH 9.3
CVE-2006-3448EPSS 37%

Buffer overflow in the Step-by-Step Interactive Training in Microsoft Windows 2000 SP4, XP SP2 and Professional, and Server 2003 SP1 allows remote at…

Mitigation only
Fix from $1,950 2007-02-13
Office HIGH 9.3
CVE-2007-0034EPSS 37%

Buffer overflow in the Advanced Search (Finder.exe) feature of Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to execut…

Mitigation only
Fix from $1,950 2007-01-09
Dynamics Gp HIGH 7.5
CVE-2006-5266EPSS 16%

Multiple buffer overflows in Microsoft Dynamics GP (formerly Great Plains) 9.0 and earlier allow remote attackers to execute arbitrary code via (1) a…

Fix: after 9.0
Fix from $1,950 2006-12-31
Windows 2000 MEDIUM 6.9
CVE-2006-6696

Double free vulnerability in Microsoft Windows 2000, XP, 2003, and Vista allows local users to gain privileges by calling the MessageBox function wit…

Mitigation only
Fix from $1,600 2006-12-22
Windows Media Player HIGH 7.5
CVE-2006-6134EPSS 41%

Heap-based buffer overflow in the WMCheckURLScheme function in WMVCORE.DLL in Microsoft Windows Media Player (WMP) 10.00.00.4036 on Windows XP SP2, S…

No fix yet
Fix from $1,950 2006-11-28
Ie MEDIUM 5.1
CVE-2006-4687EPSS 25%

Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via crafted layout combinations involving DIV tags and H…

Mitigation only
Fix from $1,600 2006-11-14
Internet Explorer HIGH 9.3
CVE-2006-4868EPSS 61%

Stack-based buffer overflow in the Vector Graphics Rendering engine (vgx.dll), as used in Microsoft Outlook and Internet Explorer 6.0 on Windows XP S…

Patch available
Fix from $1,950 2006-09-19
Ie HIGH 7.6
CVE-2006-4777EPSS 80%

Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) for Internet Explorer 6.0 SP1, …

Mitigation only
Fix from $1,950 2006-09-14
Office HIGH 9.3
CVE-2006-0001EPSS 42%

Stack-based buffer overflow in Microsoft Publisher 2000 through 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted PU…

Patch available
Fix from $1,950 2006-09-12
Ie HIGH 7.5
CVE-2006-3638EPSS 37%

Microsoft Internet Explorer 5.01 and 6 does not properly handle uninitialized COM objects, which allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2006-08-08
Excel HIGH 9.3
CVE-2006-1302EPSS 14%

Buffer overflow in Microsoft Excel 2000 through 2003 allows user-assisted attackers to execute arbitrary code via a .xls file with certain crafted fi…

Patch available
Fix from $1,950 2006-07-13
Dhcp Client Service HIGH 10.0
CVE-2006-2372EPSS 90%

Buffer overflow in the DHCP Client service for Microsoft Windows 2000 SP4, Windows XP SP1 and SP2, and Server 2003 up to SP1 allows remote attackers …

Patch available
Fix from $1,950 2006-07-11
Office HIGH 9.3
CVE-2006-0007EPSS 20%

Buffer overflow in GIFIMP32.FLT, as used in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assist…

Mitigation only
Fix from $1,950 2006-07-11
Hyperlink Object Library HIGH 9.3
CVE-2006-3086EPSS 56%

Stack-based buffer overflow in the HrShellOpenWithMonikerDisplayName function in Microsoft Hyperlink Object Library (hlink.dll) allows remote attacke…

Patch available
Fix from $1,950 2006-06-19
Windows Media Player HIGH 9.3
CVE-2006-0025EPSS 49%

Stack-based buffer overflow in Microsoft Windows Media Player 9 and 10 allows remote attackers to execute arbitrary code via a PNG image with a large…

Patch available
Fix from $1,950 2006-06-13
Windows 2000 HIGH 9.3
CVE-2006-2379EPSS 54%

Buffer overflow in the TCP/IP Protocol driver in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote attackers …

Patch available
Fix from $1,950 2006-06-13
Distributed Transaction Coordinator HIGH 7.5
CVE-2006-0034EPSS 31%

Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC…

Patch available
Fix from $1,950 2006-05-10
Office MEDIUM 5.1
CVE-2006-0031EPSS 18%

Stack-based buffer overflow in Microsoft Excel 2000, 2002, and 2003, in Microsoft Office 2000 SP3 and other packages, allows user-assisted attackers …

Patch available
Fix from $1,600 2006-03-14