Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Forefront Threat Management Gateway MEDIUM 5.0
CVE-2009-0077EPSS 78%

The firewall engine in Microsoft Forefront Threat Management Gateway, Medium Business Edition (TMG MBE); and Internet Security and Acceleration (ISA)…

Mitigation only
Fix from $1,600 2009-04-15
Subsystem For Unix Based Applications HIGH 10.0
CVE-2009-1216EPSS 24%

Multiple unspecified vulnerabilities in (1) unlzh.c and (2) unpack.c in the gzip libraries in Microsoft Windows Server 2008, Windows Services for UNI…

Mitigation only
Fix from $1,950 2009-04-01
Excel HIGH 8.8
CVE-2009-0238 KEVEPSS 43%

Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Compatibility Pack for Word, Excel, …

Mitigation only
Fix from $1,950 2009-02-25
Windows HIGH 7.8
CVE-2008-6194EPSS 11%

Memory leak in the DNS server in Microsoft Windows allows remote attackers to cause a denial of service (memory consumption) via DNS packets. NOTE: …

Mitigation only
Fix from $1,950 2009-02-19
Windows Live Messenger MEDIUM 5.0
CVE-2009-0647EPSS 17%

msnmsgr.exe in Windows Live Messenger (WLM) 2009 build 14.0.8064.206, and other 14.0.8064.x builds, allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,600 2009-02-19
Visio HIGH 9.3
CVE-2009-0095EPSS 23%

Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 does not properly validate object data in Visio files, which allows remote attackers to execu…

Mitigation only
Fix from $1,950 2009-02-10
Visio HIGH 9.3
CVE-2009-0096EPSS 23%

Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 does not properly perform memory copy operations for object data, which allows remote attacke…

Mitigation only
Fix from $1,950 2009-02-10
Visio HIGH 9.3
CVE-2009-0097EPSS 23%

Microsoft Office Visio 2002 SP2 and 2003 SP3 does not properly validate memory allocation for Visio files, which allows remote attackers to execute a…

Mitigation only
Fix from $1,950 2009-02-10
Exchange Server HIGH 9.3
CVE-2009-0098EPSS 25%

Microsoft Exchange 2000 Server SP3, Exchange Server 2003 SP2, and Exchange Server 2007 SP1 do not properly interpret Transport Neutral Encapsulation …

Mitigation only
Fix from $1,950 2009-02-10
Exchange Server MEDIUM 5.0
CVE-2009-0099EPSS 26%

The Electronic Messaging System Microsoft Data Base (EMSMDB32) provider in Microsoft Exchange 2000 Server SP3 and Exchange Server 2003 SP2, as used i…

Mitigation only
Fix from $1,600 2009-02-10
Xml Core Services MEDIUM 5.0
CVE-2009-0419EPSS 15%

Microsoft XML Core Services, as used in Microsoft Expression Web, Office, Internet Explorer 6 and 7, and other products, does not properly restrict a…

Mitigation only
Fix from $1,600 2009-02-04
Windows Mobile HIGH 8.8
CVE-2009-0244EPSS 30%

Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobile 6 Professional, and probably Windows Mob…

No fix yet
Fix from $1,950 2009-01-21
Html Help Workshop HIGH 10.0
CVE-2009-0133EPSS 67%

Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary code via a .hhp file with a …

No fix yet
Fix from $1,950 2009-01-15
Windows 2000 HIGH 7.6
CVE-1999-1593EPSS 18%

Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service (connectivity loss) or steal credentials via a 1Ch regist…

No fix yet
Fix from $1,950 2009-01-15
Internet Information Services HIGH 7.5
CVE-2003-1567EPSS 25%

The undocumented TRACK method in Microsoft Internet Information Services (IIS) 5.0 returns the content of the original request in the body of the res…

No fix yet
Fix from $1,950 2009-01-15
Internet Information Services MEDIUM 5.0
CVE-2003-1566EPSS 28%

Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sensitive …

No fix yet
Fix from $1,600 2009-01-15
Office Excel HIGH 9.3
CVE-2008-4264EPSS 26%

Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Office Compatibility Pack f…

Mitigation only
Fix from $1,950 2008-12-10
Office Excel HIGH 9.3
CVE-2008-4265EPSS 25%

Microsoft Office Excel 2000 SP3 allows remote attackers to execute arbitrary code via a crafted Excel spreadsheet that contains a malformed object, w…

Mitigation only
Fix from $1,950 2008-12-10
Excel HIGH 9.3
CVE-2008-4266EPSS 28%

Array index vulnerability in Microsoft Office Excel 2000 SP3, 2002 SP3, and 2003 SP3; Excel Viewer 2003 Gold and SP3; Office 2004 and 2008 for Mac; a…

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4837EPSS 37%

Stack-based buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compa…

Mitigation only
Fix from $1,950 2008-12-10
Wordpad HIGH 9.3
CVE-2008-4841EPSS 43%

The WordPad Text Converter for Word 97 files in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2 allows remote attackers to execute ar…

No fix yet
Fix from $1,950 2008-12-10
Sql Server HIGH 9.0
CVE-2008-5416EPSS 87%

Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Server 2000 Desktop Engine (MSDE 2000) SP4; SQL S…

No fix yet
Fix from $1,950 2008-12-10
Windows Media Player HIGH 10.0
CVE-2008-3009EPSS 16%

Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1, 9, and 2008 do not properly use the …

Mitigation only
Fix from $1,950 2008-12-10
Windows Media Player HIGH 10.0
CVE-2008-3010EPSS 15%

Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1 and 9 incorrectly associate ISATAP ad…

Mitigation only
Fix from $1,950 2008-12-10
Windows 2000 CRITICAL 9.8
CVE-2008-3465EPSS 14%

Heap-based buffer overflow in an API in GDI in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20…

Mitigation only
Fix from $2,300 2008-12-10
Windows 2000 HIGH 9.3
CVE-2008-2249EPSS 31%

Integer overflow in GDI in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote att…

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4024EPSS 29%

Microsoft Office Word 2000 SP3 and 2002 SP3 and Office 2004 for Mac allow remote attackers to execute arbitrary code via a Word document with a craft…

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4025EPSS 33%

Integer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 Gold and S…

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4026EPSS 23%

Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compatibility Pack for Word, Excel, …

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4027EPSS 34%

Double free vulnerability in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 G…

Mitigation only
Fix from $1,950 2008-12-10