Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Office Web Apps HIGH 9.3
CVE-2013-3848EPSS 21%

Microsoft Word Automation Services in SharePoint Server 2010 SP1, Word Web App 2010 SP1 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2…

Mitigation only
Fix from $1,950 2013-09-11
Office Compatibility Pack HIGH 9.3
CVE-2013-3849EPSS 21%

Microsoft Word Automation Services in SharePoint Server 2010 SP1, Word Web App 2010 SP1 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2…

Mitigation only
Fix from $1,950 2013-09-11
Office Compatibility Pack HIGH 9.3
CVE-2013-3850EPSS 20%

Microsoft Word 2003 SP3, 2007 SP3, and 2010 SP1 and SP2; Office Compatibility Pack SP3; and Word Viewer allow remote attackers to execute arbitrary c…

Mitigation only
Fix from $1,950 2013-09-11
Office Compatibility Pack HIGH 9.3
CVE-2013-3851EPSS 20%

Microsoft Office 2003 SP3 and 2007 SP3, Word 2003 SP3 and 2007 SP3, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute …

Mitigation only
Fix from $1,950 2013-09-11
Office Compatibility Pack HIGH 9.3
CVE-2013-3852EPSS 20%

Microsoft Word 2003 SP3, 2007 SP3, and 2010 SP1; Office Compatibility Pack SP3; and Word Viewer allow remote attackers to execute arbitrary code or c…

Mitigation only
Fix from $1,950 2013-09-11
Office HIGH 9.3
CVE-2013-3853EPSS 20%

Microsoft Office 2007 SP3 and Word 2007 SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a c…

Mitigation only
Fix from $1,950 2013-09-11
Office HIGH 9.3
CVE-2013-3854EPSS 20%

Microsoft Office 2007 SP3 and Word 2007 SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a c…

Mitigation only
Fix from $1,950 2013-09-11
Office Compatibility Pack HIGH 9.3
CVE-2013-3855EPSS 20%

Microsoft Word 2003 SP3 and 2007 SP3, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code or cause a deni…

Mitigation only
Fix from $1,950 2013-09-11
Word HIGH 9.3
CVE-2013-3856EPSS 20%

Microsoft Word 2003 SP3 and Word Viewer allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craft…

Mitigation only
Fix from $1,950 2013-09-11
Sharepoint Server HIGH 9.3
CVE-2013-3857EPSS 21%

Microsoft Word Automation Services in SharePoint Server 2010 SP1 and SP2, Word Web App 2010 SP1 and SP2 in Office Web Apps 2010, Word 2003 SP3, Word …

Mitigation only
Fix from $1,950 2013-09-11
Office Compatibility Pack HIGH 9.3
CVE-2013-3858EPSS 21%

Microsoft Word Automation Services in SharePoint Server 2010 SP1, Word Web App 2010 SP1 in Office Web Apps 2010, Word 2003 SP3, Word 2007 SP3, Word 2…

Mitigation only
Fix from $1,950 2013-09-11
Outlook HIGH 9.3
CVE-2013-3870EPSS 19%

Double free vulnerability in Microsoft Outlook 2007 SP3 and 2010 SP1 and SP2 allows remote attackers to execute arbitrary code by including many nest…

No fix yet
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.8
CVE-2013-1342

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.2
CVE-2013-1341

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.2
CVE-2013-1343

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.2
CVE-2013-1344

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.2
CVE-2013-3864

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.2
CVE-2013-3865

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Windows 2003 Server HIGH 7.2
CVE-2013-3866

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2…

Mitigation only
Fix from $1,950 2013-09-11
Office MEDIUM 6.9
CVE-2013-3859

Microsoft Pinyin IME 2010, when used in conjunction with Microsoft Office 2010 SP1, does not properly restrict configuration options, which allows lo…

Mitigation only
Fix from $1,600 2013-09-11
Office MEDIUM 5.0
CVE-2013-3160EPSS 23%

Microsoft Office 2003 SP3 and 2007 SP3, Word 2003 SP3 and 2007 SP3, and Word Viewer allow remote attackers to read arbitrary files via an XML documen…

Mitigation only
Fix from $1,600 2013-09-11
Active Directory Lightweight Directory Service MEDIUM 5.0
CVE-2013-3868EPSS 37%

Microsoft Active Directory Lightweight Directory Service (AD LDS) on Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, and Window…

Mitigation only
Fix from $1,600 2013-09-11
Sharepoint Foundation MEDIUM 5.0
CVE-2013-0081EPSS 77%

Microsoft SharePoint Portal Server 2003 SP3 and SharePoint Server 2007 SP3, 2010 SP1 and SP2, and 2013 do not properly process unassigned workflows, …

Mitigation only
Fix from $1,600 2013-09-11
Active Directory Federation Services MEDIUM 5.0
CVE-2013-3185EPSS 41%

Microsoft Active Directory Federation Services (AD FS) 1.x through 2.1 on Windows Server 2003 R2 SP2, Windows Server 2008 SP2 and R2 SP1, and Windows…

Mitigation only
Fix from $1,600 2013-08-14
.net Framework HIGH 9.3
CVE-2013-3132EPSS 22%

Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly check the permissions of objects that use reflection, wh…

Mitigation only
Fix from $1,950 2013-07-10
.net Framework HIGH 9.3
CVE-2013-3133EPSS 21%

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly check the permissions of objects that use reflection, which allows remote …

Mitigation only
Fix from $1,950 2013-07-10
.net Framework HIGH 9.3
CVE-2013-3134EPSS 21%

The Common Language Runtime (CLR) in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 on 64-bit platforms does not properly allocate arrays o…

Mitigation only
Fix from $1,950 2013-07-10
.net Framework HIGH 9.3
CVE-2013-3171EPSS 21%

The serialization functionality in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5 SP1, 3.5.1, 4, and 4.5 does not properly check the permissions of deleg…

Mitigation only
Fix from $1,950 2013-07-10
Windows Defender MEDIUM 6.9
CVE-2013-3154

The signature-update functionality in Windows Defender on Microsoft Windows 7 and Windows Server 2008 R2 relies on an incorrect pathname, which allow…

Mitigation only
Fix from $1,600 2013-07-10
Windows Media Format Runtime HIGH 9.3
CVE-2013-3127EPSS 22%

The Microsoft WMV video codec in wmv9vcm.dll, wmvdmod.dll in Windows Media Format Runtime 9 and 9.5, and wmvdecod.dll in Windows Media Format Runtime…

Mitigation only
Fix from $1,950 2013-07-10