Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Windows 2000 HIGH 7.8
CVE-2010-0022EPSS 78%

The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1,…

Mitigation only
Fix from $1,950 2010-02-10
Windows 2000 MEDIUM 6.9
CVE-2010-0023

The Client/Server Run-time Subsystem (CSRSS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly kill processes afte…

Mitigation only
Fix from $1,600 2010-02-10
Windows 2000 HIGH 9.0
CVE-2010-0020EPSS 32%

The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1,…

Mitigation only
Fix from $1,950 2010-02-10
Windows 2000 MEDIUM 5.9
CVE-2010-0021EPSS 13%

Multiple race conditions in the SMB implementation in the Server service in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2…

Mitigation only
Fix from $1,600 2010-02-10
Internet Explorer HIGH 9.3
CVE-2010-0027EPSS 34%

The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SP4, XP SP…

Mitigation only
Fix from $1,950 2010-01-22
Windows 2000 HIGH 9.3
CVE-2010-0018EPSS 27%

Integer overflow in the Embedded OpenType (EOT) Font Engine (t2embed.dll) in Microsoft Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 …

Mitigation only
Fix from $1,950 2010-01-13
Internet Information Services MEDIUM 6.0
CVE-2009-4444EPSS 64%

Microsoft Internet Information Services (IIS) 5.x and 6.x uses only the portion of a filename before a ; (semicolon) character to determine the file …

Mitigation only
Fix from $1,600 2009-12-29
Office Project HIGH 9.3
CVE-2009-0102EPSS 24%

Microsoft Project 2000 SR1 and 2002 SP1, and Office Project 2003 SP3, does not properly handle memory allocation for Project files, which allows remo…

Mitigation only
Fix from $1,950 2009-12-09
Windows 2000 HIGH 9.3
CVE-2009-2506EPSS 31%

Integer overflow in the text converters in Microsoft Office Word 2002 SP3 and 2003 SP3; Works 8.5; Office Converter Pack; and WordPad in Windows 2000…

Mitigation only
Fix from $1,950 2009-12-09
Windows 2000 MEDIUM 6.8
CVE-2009-3675EPSS 25%

LSASS.exe in the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote …

Mitigation only
Fix from $1,600 2009-12-09
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3130EPSS 29%

Heap-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allows remote…

Mitigation only
Fix from $1,950 2009-11-11
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3131EPSS 25%

Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Excel V…

Mitigation only
Fix from $1,950 2009-11-11
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3132EPSS 26%

Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Excel V…

Mitigation only
Fix from $1,950 2009-11-11
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3133EPSS 25%

Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allow remote attackers to execute arbitrary…

Mitigation only
Fix from $1,950 2009-11-11
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3134EPSS 26%

Microsoft Office Excel 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Excel V…

Mitigation only
Fix from $1,950 2009-11-11
Windows 2000 HIGH 9.3
CVE-2009-2514EPSS 47%

win32k.sys in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not correctly parse font code during construction of…

Mitigation only
Fix from $1,950 2009-11-11
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3127EPSS 25%

Microsoft Office Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, Open XML File Format Converter for Mac, and Office Excel Viewer 2003 SP3 …

Mitigation only
Fix from $1,950 2009-11-11
Compatibility Pack Word Excel Powerpoint HIGH 9.3
CVE-2009-3128EPSS 25%

Microsoft Office Excel 2002 SP3 and 2003 SP3, and Office Excel Viewer 2003 SP3, does not properly parse the Excel file format, which allows remote at…

Mitigation only
Fix from $1,950 2009-11-11
Office HIGH 9.3
CVE-2009-3135EPSS 36%

Stack-based buffer overflow in Microsoft Office Word 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, Open XML File Format Converter for Mac, Off…

Mitigation only
Fix from $1,950 2009-11-11
Windows 2000 HIGH 7.8
CVE-2009-1928EPSS 30%

Stack consumption vulnerability in the LDAP service in Active Directory on Microsoft Windows 2000 SP4, Server 2003 SP2, and Server 2008 Gold and SP2;…

Mitigation only
Fix from $1,950 2009-11-11
Windows 2000 HIGH 7.2
CVE-2009-1127

win32k.sys in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 does …

Mitigation only
Fix from $1,950 2009-11-11
Windows 2000 HIGH 7.2
CVE-2009-2513

The Graphics Device Interface (GDI) in win32k.sys in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and …

Mitigation only
Fix from $1,950 2009-11-11
Sharepoint Server MEDIUM 5.0
CVE-2009-3830EPSS 33%

The download functionality in Team Services in Microsoft Office SharePoint Server 2007 12.0.0.4518 and 12.0.0.6219 allows remote attackers to read AS…

No fix yet
Fix from $1,600 2009-10-30
Windows 2000 HIGH 9.3
CVE-2009-2497EPSS 23%

The Common Language Runtime (CLR) in Microsoft .NET Framework 2.0, 2.0 SP1, 2.0 SP2, 3.5, and 3.5 SP1, and Silverlight 2, does not properly handle in…

Mitigation only
Fix from $1,950 2009-10-14
Windows 2003 Server HIGH 9.3
CVE-2009-2500EPSS 24%

Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System S…

Mitigation only
Fix from $1,950 2009-10-14
Windows 2003 Server HIGH 9.3
CVE-2009-2501EPSS 27%

Heap-based buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Offic…

Mitigation only
Fix from $1,950 2009-10-14
Windows 2003 Server HIGH 9.3
CVE-2009-2503EPSS 22%

GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Windows Server 2003 SP2, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office Sys…

Mitigation only
Fix from $1,950 2009-10-14
Windows 2003 Server HIGH 9.3
CVE-2009-2504EPSS 21%

Multiple integer overflows in unspecified APIs in GDI+ in Microsoft .NET Framework 1.1 SP1, .NET Framework 2.0 SP1 and SP2, Windows XP SP2 and SP3, W…

Mitigation only
Fix from $1,950 2009-10-14
Windows 2000 HIGH 9.3
CVE-2009-2507EPSS 19%

A certain ActiveX control in the Indexing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly process URLs, …

Mitigation only
Fix from $1,950 2009-10-14
Office HIGH 9.3
CVE-2009-2518EPSS 23%

Integer overflow in GDI+ in Microsoft Office XP SP3 allows remote attackers to execute arbitrary code via an Office document with a bitmap (aka BMP) …

Mitigation only
Fix from $1,950 2009-10-14