Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
HIGH 7.5
CVE-2013-1337EPSS 21%
Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication i…
.net Framework
Mitigation only
HIGH 7.2
CVE-2011-0039
The Local Security Authority Subsystem Service (LSASS) in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly process authenticati…
Windows 2003 Server
Mitigation only
MEDIUM 6.8
CVE-2009-2064
Microsoft Internet Explorer 8, and possibly other versions, detects http content in https web pages only when the top-level frame uses https, which a…
Internet Explorer
after 8
MEDIUM 5.8
CVE-2009-2069
Microsoft Internet Explorer before 8 displays a cached certificate for a (1) 4xx or (2) 5xx CONNECT response page returned by a proxy server, which a…
Ie
Mitigation only
MEDIUM 5.8
CVE-2009-2057
Microsoft Internet Explorer before 8 uses the HTTP Host header to determine the context of a document provided in a (1) 4xx or (2) 5xx CONNECT respon…
Ie
No fix yet
HIGH 7.5
CVE-2009-1122EPSS 98%
The WebDAV extension in Microsoft Internet Information Services (IIS) 5.0 on Windows 2000 SP4 does not properly decode URLs, which allows remote atta…
Internet Information Services
Patch available
HIGH 7.5
CVE-2009-1535EPSS 98%
The WebDAV extension in Microsoft Internet Information Services (IIS) 5.1 and 6.0 allows remote attackers to bypass URI-based protection mechanisms, …
Internet Information Services
Patch available
HIGH 7.5
CVE-2008-4032EPSS 48%
Microsoft Office SharePoint Server 2007 Gold and SP1 and Microsoft Search Server 2008 do not properly perform authentication and authorization for ad…
Office Sharepoint Server
Mitigation only
HIGH 9.3
CVE-2008-4037EPSS 59%
Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote SMB servers …
Windows
Patch available
HIGH 10.0
CVE-2008-3466EPSS 78%
Microsoft Host Integration Server (HIS) 2000, 2004, and 2006 does not limit RPC access to administrative functions, which allows remote attackers to …
Host Integration Server 2000
Patch available
HIGH 10.0
CVE-1999-0987
Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of the domain name.
Windows Nt
No fix yet
MEDIUM 5.0
CVE-1999-0680EPSS 6%
Windows NT Terminal Server performs extra work when a client opens a new connection but before it is authenticated, allowing for a denial of service.
Terminal Server
Patch available
HIGH 7.5
CVE-1999-0366
In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash val…
Windows Nt
Mitigation only