Vulnerability index

Browse CVEs

121 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Digital Image Suite HIGH 9.3
CVE-2008-3013EPSS 52%

gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP…

Mitigation only
Fix from $1,950 2008-09-11
Office Powerpoint Viewer HIGH 9.3
CVE-2008-0120EPSS 32%

Integer overflow in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with a malformed picture…

Patch available
Fix from $1,950 2008-08-13
Office Powerpoint Viewer HIGH 9.3
CVE-2008-0121EPSS 31%

A "memory calculation error" in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with an inva…

Mitigation only
Fix from $1,950 2008-08-13
Compatibility Pack Word Excel Powerpoint MEDIUM 6.8
CVE-2008-1455EPSS 26%

A "memory calculation error" in Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP2, and 2007 through SP1; Office Compatibility Pack for Word, E…

Mitigation only
Fix from $1,600 2008-08-13
Office HIGH 9.3
CVE-2008-3006EPSS 36%

Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 Gold and SP3; Office Excel Viewer; Offic…

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3019EPSS 30%

Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of an Encapsulated PostScript (E…

Patch available
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3020EPSS 30%

Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attacker…

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3021EPSS 36%

Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows rem…

Patch available
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3460EPSS 32%

WPGIMP32.FLT in Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 does not properly parse the length of a WordPerfe…

Mitigation only
Fix from $1,950 2008-08-12
Office Word HIGH 9.3
CVE-2008-2244EPSS 32%

Microsoft Office Word 2002 SP3 allows remote attackers to execute arbitrary code via a .doc file that contains malformed data, as exploited in the wi…

Mitigation only
Fix from $1,950 2008-07-09
Word HIGH 7.1
CVE-2008-2752EPSS 28%

Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a d…

No fix yet
Fix from $1,950 2008-06-18
Office HIGH 9.3
CVE-2008-1434EPSS 31%

Use-after-free vulnerability in Microsoft Word in Office 2000 and XP SP3, 2003 SP2 and SP3, and 2007 Office System SP1 and earlier allows remote atta…

Patch available
Fix from $1,950 2008-05-13
Antigen For Exchange MEDIUM 5.0
CVE-2008-1437EPSS 13%

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, al…

Mitigation only
Fix from $1,600 2008-05-13
Antigen For Exchange MEDIUM 5.0
CVE-2008-1438EPSS 13%

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, al…

Mitigation only
Fix from $1,600 2008-05-13
Windows Nt MEDIUM 5.0
CVE-2008-0927EPSS 70%

dhost.exe in Novell eDirectory 8.7.3 before sp10 and 8.8.2 allows remote attackers to cause a denial of service (CPU consumption) via an HTTP request…

No fix yet
Fix from $1,600 2008-04-14
Project HIGH 9.3
CVE-2008-1088EPSS 32%

Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a crafted Projec…

Patch available
Fix from $1,950 2008-04-08
Office HIGH 9.3
CVE-2008-1090EPSS 32%

Unspecified vulnerability in Microsoft Visio 2002 SP2, 2003 SP2 and SP3, and 2007 up to SP1 allows user-assisted remote attackers to execute arbitrar…

Patch available
Fix from $1,950 2008-04-08
Office HIGH 9.3
CVE-2008-0103EPSS 30%

Unspecified vulnerability in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute ar…

Mitigation only
Fix from $1,950 2008-02-13
Publisher HIGH 10.0
CVE-2008-0102EPSS 37%

Unspecified vulnerability in Microsoft Office Publisher 2000, 2002, and 2003 SP2 allows remote attackers to execute arbitrary code via a crafted .pub…

Mitigation only
Fix from $1,950 2008-02-12
Office HIGH 9.3
CVE-2008-0109EPSS 31%

Word in Microsoft Office 2000 SP3, XP SP3, Office 2003 SP2, and Office Word Viewer 2003 allows remote attackers to execute arbitrary code via crafted…

Mitigation only
Fix from $1,950 2008-02-12
Ie HIGH 9.3
CVE-2007-3902EPSS 36%

Use-after-free vulnerability in the CRecalcProperty function in mshtml.dll in Microsoft Internet Explorer 5.01 through 7 allows remote attackers to e…

Mitigation only
Fix from $1,950 2007-12-12
Ie MEDIUM 6.8
CVE-2007-3903EPSS 31%

Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code via uninitialized or deleted objects used in repeated calls to …

Mitigation only
Fix from $1,600 2007-12-12
Ie MEDIUM 6.8
CVE-2007-5347EPSS 28%

Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via "unexpected method calls to HTML objects," aka "DHTM…

Mitigation only
Fix from $1,600 2007-12-12
Windows 2003 Server HIGH 7.1
CVE-2007-5133EPSS 23%

Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file…

No fix yet
Fix from $1,950 2007-09-27
Publisher HIGH 9.3
CVE-2007-1754EPSS 33%

PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted …

Mitigation only
Fix from $1,950 2007-07-10
Visual Basic HIGH 9.3
CVE-2007-2884EPSS 36%

Multiple stack-based buffer overflows in Microsoft Visual Basic 6 allow user-assisted remote attackers to cause a denial of service (CPU consumption)…

No fix yet
Fix from $1,950 2007-05-30
Office HIGH 9.3
CVE-2007-1747EPSS 32%

Unspecified vulnerability in MSO.dll in Microsoft Office 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and 2007 allows user-assisted remote attackers t…

Mitigation only
Fix from $1,950 2007-05-08
Windows 2000 HIGH 7.1
CVE-2007-1211EPSS 29%

Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to c…

Mitigation only
Fix from $1,950 2007-04-04
Visual C\+\+ MEDIUM 5.0
CVE-2007-0842EPSS 6%

The 64-bit versions of Microsoft Visual C++ 8.0 standard library (MSVCR80.DLL) time functions, including (1) localtime, (2) localtime_s, (3) gmtime, …

Patch available
Fix from $1,600 2007-02-13
Windows 2000 HIGH 7.5
CVE-2006-0143EPSS 31%

Microsoft Windows Graphics Rendering Engine (GRE) allows remote attackers to corrupt memory and cause a denial of service (crash) via a WMF file cont…

Patch available
Fix from $1,950 2006-01-09