Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

.net Framework HIGH 9.3
CVE-2013-3131EPSS 22%

Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5, and Silverlight 5 before 5.1.20513.0, does not properly prevent changes to data in multidim…

Mitigation only
Fix from $1,950 2013-07-10
.net Framework HIGH 7.8
CVE-2013-3129EPSS 32%

Microsoft .NET Framework 3.0 SP2, 3.5, 3.5.1, 4, and 4.5; Silverlight 5 before 5.1.20513.0; win32k.sys in the kernel-mode drivers, and GDI+, DirectWr…

Mitigation only
Fix from $1,950 2013-07-10
Publisher HIGH 10.0
CVE-2013-1318EPSS 26%

Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers access to an invalid pointe…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 10.0
CVE-2013-1319EPSS 25%

Microsoft Publisher 2003 SP3 does not properly check the return value of an unspecified method, which allows remote attackers to execute arbitrary co…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 10.0
CVE-2013-1320EPSS 29%

Buffer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Buffer…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 10.0
CVE-2013-1322EPSS 25%

Microsoft Publisher 2003 SP3 does not properly check table range data, which allows remote attackers to execute arbitrary code via a crafted Publishe…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1316EPSS 22%

Microsoft Publisher 2003 SP3 does not properly validate the size of an unspecified array, which allows remote attackers to execute arbitrary code via…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1317EPSS 21%

Integer overflow in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers an impr…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1321EPSS 22%

Microsoft Publisher 2003 SP3 does not properly check the data type of an unspecified return value, which allows remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1323EPSS 21%

Microsoft Publisher 2003 SP3 does not properly handle NULL values for unspecified data items, which allows remote attackers to execute arbitrary code…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1327EPSS 21%

Integer signedness error in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1328EPSS 21%

Microsoft Publisher 2003 SP3, 2007 SP3, and 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers inc…

Mitigation only
Fix from $1,950 2013-05-15
Publisher HIGH 9.3
CVE-2013-1329EPSS 21%

Integer signedness error in Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers…

Mitigation only
Fix from $1,950 2013-05-15
Word HIGH 9.3
CVE-2013-1335EPSS 21%

Microsoft Word 2003 SP3 and Word Viewer allow remote attackers to execute arbitrary code via crafted shape data in a Word document, aka "Word Shape C…

Mitigation only
Fix from $1,950 2013-05-15
.net Framework HIGH 7.5
CVE-2013-1337EPSS 21%

Microsoft .NET Framework 4.5 does not properly create policy requirements for custom Windows Communication Foundation (WCF) endpoint authentication i…

Mitigation only
Fix from $1,950 2013-05-15
.net Framework MEDIUM 5.0
CVE-2013-1336EPSS 19%

The Common Language Runtime (CLR) in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly check signatures, which allows remote…

Mitigation only
Fix from $1,600 2013-05-15
Lync HIGH 9.3
CVE-2013-1302EPSS 22%

Microsoft Communicator 2007 R2, Lync 2010, Lync 2010 Attendee, and Lync Server 2013 do not properly handle objects in memory, which allows remote att…

Mitigation only
Fix from $1,950 2013-05-15
Windows Essentials MEDIUM 6.8
CVE-2013-0096EPSS 16%

Writer in Microsoft Windows Essentials 2011 and 2012 allows remote attackers to bypass proxy settings and overwrite arbitrary files via crafted URL p…

Mitigation only
Fix from $1,600 2013-05-15
Remote Desktop Connection HIGH 9.3
CVE-2013-1296EPSS 21%

The Remote Desktop ActiveX control in mstscax.dll in Microsoft Remote Desktop Connection Client 6.1 and 7.0 does not properly handle objects in memor…

Mitigation only
Fix from $1,950 2013-04-09
Windows Defender HIGH 7.2
CVE-2013-0078

The Microsoft Antimalware Client in Windows Defender on Windows 8 and Windows RT uses an incorrect pathname for MsMpEng.exe, which allows local users…

Mitigation only
Fix from $1,950 2013-04-09
Active Directory MEDIUM 5.0
CVE-2013-1282EPSS 27%

The LDAP service in Microsoft Active Directory, Active Directory Application Mode (ADAM), Active Directory Lightweight Directory Service (AD LDS), an…

Mitigation only
Fix from $1,600 2013-04-09
Modern Mail MEDIUM 5.8
CVE-2013-1299EPSS 9%

Microsoft Windows Modern Mail allows remote attackers to spoof link targets via a crafted HTML e-mail message.

Mitigation only
Fix from $1,600 2013-03-29
Office Filter Pack HIGH 9.3
CVE-2013-0079EPSS 27%

Microsoft Visio Viewer 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Visio file that triggers incorrect memory allocation,…

Mitigation only
Fix from $1,950 2013-03-13
Sharepoint Foundation HIGH 7.8
CVE-2013-0085EPSS 34%

Buffer overflow in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to cause a denial of service (W3WP…

Mitigation only
Fix from $1,950 2013-03-13
Sharepoint Foundation HIGH 7.5
CVE-2013-0080EPSS 19%

Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allow remote attackers to bypass intended read restrictions for content, and …

Mitigation only
Fix from $1,950 2013-03-13
Sharepoint Foundation HIGH 7.5
CVE-2013-0084EPSS 21%

Directory traversal vulnerability in Microsoft SharePoint Server 2010 SP1 and SharePoint Foundation 2010 SP1 allows remote attackers to bypass intend…

Mitigation only
Fix from $1,950 2013-03-13
Sharepoint Foundation MEDIUM 5.0
CVE-2013-0086EPSS 24%

Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive infor…

Mitigation only
Fix from $1,600 2013-03-13
Office MEDIUM 5.0
CVE-2013-0095EPSS 21%

Outlook in Microsoft Office for Mac 2008 before 12.3.6 and Office for Mac 2011 before 14.3.2 allows remote attackers to trigger access to a remote UR…

Mitigation only
Fix from $1,600 2013-03-13
.net Framework HIGH 10.0
CVE-2013-0073EPSS 30%

The Windows Forms (aka WinForms) component in Microsoft .NET Framework 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly restrict the privileges of a…

Mitigation only
Fix from $1,950 2013-02-13
Exchange Server MEDIUM 6.8
CVE-2013-0418EPSS 8%

Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7 and 8.4 allows context-dependent attackers …

Mitigation only
Fix from $1,600 2013-01-17