Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Office HIGH 9.3
CVE-2008-4028EPSS 38%

Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compatibi…

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4030EPSS 23%

Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; and Office Compa…

Mitigation only
Fix from $1,950 2008-12-10
Office HIGH 9.3
CVE-2008-4031EPSS 23%

Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compatibi…

Mitigation only
Fix from $1,950 2008-12-10
Office Frontpage HIGH 8.5
CVE-2008-4252EPSS 21%

The DataGrid ActiveX control in Microsoft Visual Basic 6.0 and Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2 does not properly handle errors during acces…

Mitigation only
Fix from $1,950 2008-12-10
Office Frontpage HIGH 8.5
CVE-2008-4253EPSS 21%

The FlexGrid ActiveX control in Microsoft Visual Basic 6.0, Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2, Office FrontPage 2002 SP3, and Office Project …

Mitigation only
Fix from $1,950 2008-12-10
Office Frontpage HIGH 8.5
CVE-2008-4254EPSS 22%

Multiple integer overflows in the Hierarchical FlexGrid ActiveX control (mshflxgd.ocx) in Microsoft Visual Basic 6.0 and Visual FoxPro 8.0 SP1 and 9.…

Mitigation only
Fix from $1,950 2008-12-10
Office Frontpage HIGH 8.5
CVE-2008-4256EPSS 21%

The Charts ActiveX control in Microsoft Visual Basic 6.0, Visual Studio .NET 2002 SP1 and 2003 SP1, and Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2 doe…

Mitigation only
Fix from $1,950 2008-12-10
Office Sharepoint Server HIGH 7.5
CVE-2008-4032EPSS 48%

Microsoft Office SharePoint Server 2007 Gold and SP1 and Microsoft Search Server 2008 do not properly perform authentication and authorization for ad…

Mitigation only
Fix from $1,950 2008-12-10
Windows 2000 HIGH 9.3
CVE-2008-5232EPSS 32%

Buffer overflow in the CallHTMLHelp method in the Microsoft Windows Media Services ActiveX control in nskey.dll 4.1.00.3917 in Windows Media Services…

No fix yet
Fix from $1,950 2008-11-26
Office Communicator MEDIUM 5.3
CVE-2008-5180EPSS 68%

Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of service (memory consumption) via…

No fix yet
Fix from $1,600 2008-11-20
Office Communications Server MEDIUM 5.0
CVE-2008-5179EPSS 16%

Unspecified vulnerability in Microsoft Office Communications Server (OCS), Office Communicator, and Windows Live Messenger allows remote attackers to…

Mitigation only
Fix from $1,600 2008-11-20
Office Communicator MEDIUM 5.0
CVE-2008-5181EPSS 13%

Microsoft Communicator allows remote attackers to cause a denial of service (application or device outage) via instant messages containing large numb…

Mitigation only
Fix from $1,600 2008-11-20
Windows MEDIUM 5.0
CVE-2008-5112EPSS 18%

The LDAP server in Active Directory in Microsoft Windows 2000 SP4 and Server 2003 SP1 and SP2 responds differently to a failed bind attempt depending…

No fix yet
Fix from $1,600 2008-11-17
.net Framework HIGH 10.0
CVE-2008-5100EPSS 8%

The strong name (SN) implementation in Microsoft .NET Framework 2.0.50727 relies on the digital signature Public Key Token embedded in the pathname o…

No fix yet
Fix from $1,950 2008-11-17
Debug Diagnostic Tool MEDIUM 5.0
CVE-2008-4800EPSS 26%

The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attackers to cause a denial of serv…

No fix yet
Fix from $1,600 2008-10-31
Peachtree Accounting HIGH 9.3
CVE-2008-4699EPSS 27%

Insecure method vulnerability in the ActiveX control (PAWWeb11.ocx) in Peachtree Accounting 2004 allows remote attackers to execute arbitrary program…

No fix yet
Fix from $1,950 2008-10-22
Digital Image MEDIUM 6.8
CVE-2008-4493EPSS 18%

Microsoft PicturePusher ActiveX control (PipPPush.DLL 7.00.0709), as used in Microsoft Digital Image 2006 Starter Edition, allows remote attackers to…

No fix yet
Fix from $1,600 2008-10-08
Internet Information Services HIGH 10.0
CVE-2008-4301EPSS 17%

A certain ActiveX control in iisext.dll in Microsoft Internet Information Services (IIS) allows remote attackers to set a password via a string argum…

No fix yet
Fix from $1,950 2008-09-29
Internet Authentication Service Helper Com Component MEDIUM 5.0
CVE-2008-4299EPSS 16%

A certain ActiveX control in the Microsoft Internet Authentication Service (IAS) Helper COM Component in iashlpr.dll allows remote attackers to cause…

Mitigation only
Fix from $1,600 2008-09-29
Internet Information Services MEDIUM 5.0
CVE-2008-4300EPSS 14%

A certain ActiveX control in adsiis.dll in Microsoft Internet Information Services (IIS) allows remote attackers to cause a denial of service (browse…

No fix yet
Fix from $1,600 2008-09-29
Windows Mobile MEDIUM 5.4
CVE-2008-4295EPSS 30%

Microsoft Windows Mobile 6.0 on HTC Wiza 200 and HTC MDA 8125 devices does not properly handle the first attempt to establish a Bluetooth connection …

No fix yet
Fix from $1,600 2008-09-27
Sql Server HIGH 7.6
CVE-2008-4110EPSS 18%

Buffer overflow in the SQLVDIRLib.SQLVDirControl ActiveX control in Tools\Binn\sqlvdir.dll in Microsoft SQL Server 2000 (aka SQL Server 8.0) allows r…

No fix yet
Fix from $1,950 2008-09-16
Organization Chart HIGH 9.3
CVE-2008-3956EPSS 13%

orgchart.exe in Microsoft Organization Chart 2.00 allows user-assisted attackers to cause a denial of service (application crash) or possibly execute…

No fix yet
Fix from $1,950 2008-09-11
Windows Image Acquisition Logger HIGH 9.3
CVE-2008-3957EPSS 18%

The Microsoft Windows Image Acquisition Logger ActiveX control allows remote attackers to force the download of arbitrary files onto a client system …

No fix yet
Fix from $1,950 2008-09-11
Office HIGH 9.3
CVE-2008-3007EPSS 32%

Argument injection vulnerability in a URI handler in Microsoft Office XP SP3, 2003 SP2 and SP3, 2007 Office System Gold and SP1, and Office OneNote 2…

Mitigation only
Fix from $1,950 2008-09-11
Windows Media Encoder HIGH 9.3
CVE-2008-3008EPSS 55%

Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remote attacker…

No fix yet
Fix from $1,950 2008-09-11
Digital Image Suite HIGH 9.3
CVE-2008-3012EPSS 31%

gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP…

Mitigation only
Fix from $1,950 2008-09-11
Digital Image Suite HIGH 9.3
CVE-2008-3013EPSS 52%

gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP…

Mitigation only
Fix from $1,950 2008-09-11
Digital Image Suite HIGH 9.3
CVE-2008-3014EPSS 37%

Buffer overflow in gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Ser…

Mitigation only
Fix from $1,950 2008-09-11
Digital Image Suite HIGH 9.3
CVE-2008-3015EPSS 39%

Integer overflow in gdiplus.dll in GDI+ in Microsoft Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP…

No fix yet
Fix from $1,950 2008-09-11