Vulnerability index

Browse CVEs

611 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Improper Input ValidationCWE-20 × clear
Windows 10 HIGH 9.3
CVE-2015-2506EPSS 16%

atmfd.dll in the Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1…

Patch available
Fix from $1,950 2015-09-09
Office HIGH 9.3
CVE-2015-2466EPSS 17%

Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted template, aka "Microso…

Mitigation only
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2464EPSS 36%

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT G…

Fix: after 5.1.40416.0
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2463EPSS 34%

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT G…

Fix: after 5.1.40416.0
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2462EPSS 36%

ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win…

Patch available
Fix from $1,950 2015-08-15
Windows 10 HIGH 9.3
CVE-2015-2461EPSS 36%

ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win…

Patch available
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2460EPSS 31%

ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win…

Patch available
Fix from $1,950 2015-08-15
Windows 10 HIGH 9.3
CVE-2015-2459EPSS 32%

ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win…

Patch available
Fix from $1,950 2015-08-15
Windows 10 HIGH 9.3
CVE-2015-2458EPSS 32%

ATMFD.DLL in the Windows Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Win…

Patch available
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2456EPSS 36%

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT G…

Fix: after 5.1.40416.0
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2455EPSS 37%

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT G…

Fix: after 5.1.40416.0
Fix from $1,950 2015-08-15
.net Framework HIGH 9.3
CVE-2015-2435EPSS 22%

Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT G…

Fix: after 5.1.40416.0
Fix from $1,950 2015-08-15
Live Meeting HIGH 9.3
CVE-2015-2431EPSS 30%

Microsoft Office 2007 SP3 and 2010 SP2, Live Meeting 2007 Console, Lync 2010, Lync 2010 Attendee, Lync 2013 SP1, and Lync Basic 2013 SP1 allow remote…

No fix yet
Fix from $1,950 2015-08-15
Windows 2003 Server MEDIUM 5.0
CVE-2015-2417EPSS 10%

OLE in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Serve…

Mitigation only
Fix from $1,600 2015-07-14
Windows 2003 Server MEDIUM 5.0
CVE-2015-2416EPSS 10%

OLE in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Serve…

Mitigation only
Fix from $1,600 2015-07-14
Sharepoint Foundation MEDIUM 6.0
CVE-2015-1700EPSS 9%

Microsoft SharePoint Server 2007 SP3, SharePoint Foundation 2010 SP2, SharePoint Server 2010 SP2, and SharePoint Foundation 2013 SP1 allow remote aut…

Mitigation only
Fix from $1,600 2015-05-13
.net Framework HIGH 9.3
CVE-2014-4149EPSS 21%

Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, 4.5.1, and 4.5.2 does not properly perform TypeFilterLevel checks, which allows remote…

Mitigation only
Fix from $1,950 2014-11-11
Office HIGH 9.3
CVE-2014-4117EPSS 17%

Microsoft Office 2007 SP3, Word 2007 SP3, Office 2010 SP1 and SP2, Word 2010 SP1 and SP2, Office for Mac 2011, Office Compatibility Pack SP3, Word Au…

Mitigation only
Fix from $1,950 2014-10-15
Lync Server MEDIUM 5.0
CVE-2014-4068EPSS 20%

The Response Group Service in Microsoft Lync Server 2010 and 2013 and the Core Components in Lync Server 2013 do not properly handle exceptions, whic…

Mitigation only
Fix from $1,600 2014-09-10
Windows 7 HIGH 9.3
CVE-2014-1818EPSS 20%

GDI+ in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Serv…

Patch available
Fix from $1,950 2014-06-11
Debug Interface Access Software Development Kit MEDIUM 6.8
CVE-2014-3802EPSS 11%

msdia.dll in Microsoft Debug Interface Access (DIA) SDK, as distributed in Microsoft Visual Studio before 2013, does not properly validate an unspeci…

Fix: after 2012
Fix from $1,600 2014-05-20
.net Framework HIGH 9.3
CVE-2014-0257EPSS 70%

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, and 4.5.1 does not properly determine whether it is safe to execute a method,…

No fix yet
Fix from $1,950 2014-02-12
.net Framework MEDIUM 5.0
CVE-2014-0253EPSS 39%

Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, 4.5, and 4.5.1 does not properly determine TCP connection states, which allows remote attac…

Mitigation only
Fix from $1,600 2014-02-12
Windows 7 HIGH 7.1
CVE-2013-3876EPSS 5%

DirectAccess in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 S…

Mitigation only
Fix from $1,950 2013-11-18
Windows 7 MEDIUM 5.0
CVE-2013-3869EPSS 18%

Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8…

Patch available
Fix from $1,600 2013-11-13
.net Framework HIGH 7.8
CVE-2013-3860EPSS 32%

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5 SP1, 3.5.1, 4, and 4.5 does not properly parse a DTD during XML digital-signature validation, which allows…

Mitigation only
Fix from $1,950 2013-10-09
.net Framework HIGH 7.8
CVE-2013-3861EPSS 83%

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5 SP1, 3.5.1, 4, and 4.5 allows remote attackers to cause a denial of service (application crash or hang) vi…

Mitigation only
Fix from $1,950 2013-10-09
Sharepoint Foundation HIGH 10.0
CVE-2013-1330EPSS 27%

The default configuration of Microsoft SharePoint Portal Server 2003 SP3, SharePoint Server 2007 SP3 and 2010 SP1 and SP2, and Office Web Apps 2010 d…

Mitigation only
Fix from $1,950 2013-09-11
Active Directory Lightweight Directory Service MEDIUM 5.0
CVE-2013-3868EPSS 37%

Microsoft Active Directory Lightweight Directory Service (AD LDS) on Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Window…

Mitigation only
Fix from $1,600 2013-09-11
Sharepoint Foundation MEDIUM 5.0
CVE-2013-0081EPSS 74%

Microsoft SharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 do not properly process unassigned workflows, …

Mitigation only
Fix from $1,600 2013-09-11