Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Windows Media Player HIGH 9.3
CVE-2008-2253EPSS 30%

Unspecified vulnerability in Microsoft Windows Media Player 11 allows remote attackers to execute arbitrary code via a crafted audio-only file that i…

Mitigation only
Fix from $1,950 2008-09-11
Digital Image Suite HIGH 9.3
CVE-2007-5348EPSS 53%

Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Offi…

Mitigation only
Fix from $1,950 2008-09-11
Windows Messenger HIGH 10.0
CVE-2008-0082EPSS 34%

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to cont…

Mitigation only
Fix from $1,950 2008-08-13
Office Powerpoint Viewer HIGH 9.3
CVE-2008-0121EPSS 31%

A "memory calculation error" in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with an inva…

Mitigation only
Fix from $1,950 2008-08-13
Compatibility Pack Word Excel Powerpoint MEDIUM 6.8
CVE-2008-1455EPSS 26%

A "memory calculation error" in Microsoft Office PowerPoint 2000 SP3, 2002 SP3, 2003 SP2, and 2007 through SP1; Office Compatibility Pack for Word, E…

Mitigation only
Fix from $1,600 2008-08-13
Office HIGH 9.3
CVE-2008-3004EPSS 32%

Microsoft Office Excel 2000 SP3, 2002 SP3, and 2003 SP2 and SP3; Office Excel Viewer 2003; and Office 2004 and 2008 for Mac do not properly validate …

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3005EPSS 32%

Array index vulnerability in Microsoft Office Excel 2000 SP3 and 2002 SP3, and Office 2004 and 2008 for Mac allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3006EPSS 36%

Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 Gold and SP3; Office Excel Viewer; Offic…

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3018EPSS 30%

Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows rem…

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3020EPSS 30%

Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attacker…

Mitigation only
Fix from $1,950 2008-08-12
Office HIGH 9.3
CVE-2008-3460EPSS 32%

WPGIMP32.FLT in Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 does not properly parse the length of a WordPerfe…

Mitigation only
Fix from $1,950 2008-08-12
Office MEDIUM 6.6
CVE-2008-3003

Microsoft Office Excel 2007 Gold and SP1 does not properly delete the PWD (password) string from connections.xml when a .xlsx file is configured not …

Mitigation only
Fix from $1,600 2008-08-12
Office Word HIGH 9.3
CVE-2008-2244EPSS 32%

Microsoft Office Word 2002 SP3 allows remote attackers to execute arbitrary code via a .doc file that contains malformed data, as exploited in the wi…

Mitigation only
Fix from $1,950 2008-07-09
Windows Nt HIGH 9.3
CVE-2008-1435EPSS 29%

Windows Explorer in Microsoft Windows Vista up to SP1, and Server 2008, allows user-assisted remote attackers to execute arbitrary code via crafted s…

Mitigation only
Fix from $1,950 2008-07-08
Data Engine HIGH 9.0
CVE-2008-0086EPSS 62%

Buffer overflow in the convert function in Microsoft SQL Server 2000 SP4, 2000 Desktop Engine (MSDE 2000) SP4, and 2000 Desktop Engine (WMSDE) allows…

Mitigation only
Fix from $1,950 2008-07-08
Data Engine HIGH 9.0
CVE-2008-0106EPSS 35%

Buffer overflow in Microsoft SQL Server 2005 SP1 and SP2, and 2005 Express Edition SP1 and SP2, allows remote authenticated users to execute arbitrar…

Mitigation only
Fix from $1,950 2008-07-08
Data Engine HIGH 9.0
CVE-2008-0107EPSS 35%

Integer underflow in SQL Server 7.0 SP4, 2000 SP4, 2005 SP1 and SP2, 2000 Desktop Engine (MSDE 2000) SP4, 2005 Express Edition SP1 and SP2, and 2000 …

Mitigation only
Fix from $1,950 2008-07-08
Access HIGH 7.5
CVE-2008-3068EPSS 17%

Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) …

Mitigation only
Fix from $1,950 2008-07-07
Office Snapshot Viewer Activex MEDIUM 6.8
CVE-2008-2463EPSS 59%

The Microsoft Office Snapshot Viewer ActiveX control in snapview.ocx 10.0.5529.0, as distributed in the standalone Snapshot Viewer and Microsoft Offi…

No fix yet
Fix from $1,600 2008-07-07
Visual Basic Enterprise Edition HIGH 9.3
CVE-2008-2959EPSS 25%

Buffer overflow in a certain ActiveX control (vb6skit.dll) in Microsoft Visual Basic Enterprise Edition 6.0 SP6 might allow remote attackers to execu…

No fix yet
Fix from $1,950 2008-07-02
Word HIGH 7.1
CVE-2008-2752EPSS 28%

Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a d…

No fix yet
Fix from $1,950 2008-06-18
Windows Installer HIGH 9.3
CVE-2008-2547EPSS 8%

Stack-based buffer overflow in msiexec.exe 3.1.4000.1823 and 4.5.6001.22159 in Microsoft Windows Installer allows context-dependent attackers to exec…

No fix yet
Fix from $1,950 2008-06-04
Ie HIGH 9.3
CVE-2008-2281EPSS 23%

Cross-zone scripting vulnerability in the Print Table of Links feature in Internet Explorer 6.0, 7.0, and 8.0b allows user-assisted remote attackers …

No fix yet
Fix from $1,950 2008-05-18
Office HIGH 9.3
CVE-2008-0119EPSS 31%

Unspecified vulnerability in Microsoft Publisher in Office 2000 and XP SP3, 2003 SP2 and SP3, and 2007 SP1 and earlier allows remote attackers to exe…

Mitigation only
Fix from $1,950 2008-05-13
Office HIGH 9.3
CVE-2008-1091EPSS 41%

Unspecified vulnerability in Microsoft Word in Office 2000 and XP SP3, 2003 SP2 and SP3, and 2007 Office System SP1 and earlier allows remote attacke…

Mitigation only
Fix from $1,950 2008-05-13
Antigen For Exchange MEDIUM 5.0
CVE-2008-1437EPSS 13%

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, al…

Mitigation only
Fix from $1,600 2008-05-13
Antigen For Exchange MEDIUM 5.0
CVE-2008-1438EPSS 13%

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, al…

Mitigation only
Fix from $1,600 2008-05-13
Windows Embedded Compact HIGH 9.3
CVE-2008-2160EPSS 18%

Multiple unspecified vulnerabilities in the JPEG (GDI+) and GIF image processing in Microsoft Windows CE 5.0 allow remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2008-05-12
Office HIGH 9.3
CVE-2008-1898EPSS 52%

A certain ActiveX control in WkImgSrv.dll 7.03.0616.0, as distributed in Microsoft Works 7 and Microsoft Office 2003 and 2007, allows remote attacker…

No fix yet
Fix from $1,950 2008-04-21
Windows Nt HIGH 9.0
CVE-2008-1436EPSS 37%

Microsoft Windows XP Professional SP2, Vista, and Server 2003 and 2008 does not properly assign activities to the (1) NetworkService and (2) LocalSer…

No fix yet
Fix from $1,950 2008-04-21