Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Message Queuing HIGH 9.0
CVE-2007-3039EPSS 69%

Stack-based buffer overflow in the Microsoft Message Queuing (MSMQ) service in Microsoft Windows 2000 Server SP4, Windows 2000 Professional SP4, and …

No fix yet
Fix from $1,950 2007-12-12
Directx HIGH 8.5
CVE-2007-3901EPSS 46%

Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for Microsoft DirectX 7.0 through…

No fix yet
Fix from $1,950 2007-12-12
Ie MEDIUM 6.8
CVE-2007-3903EPSS 31%

Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code via uninitialized or deleted objects used in repeated calls to …

Mitigation only
Fix from $1,600 2007-12-12
Ie MEDIUM 6.8
CVE-2007-5344EPSS 27%

Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via a crafted website using Javascript that creates, mod…

Mitigation only
Fix from $1,600 2007-12-12
Ie MEDIUM 6.8
CVE-2007-5347EPSS 28%

Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via "unexpected method calls to HTML objects," aka "DHTM…

Mitigation only
Fix from $1,600 2007-12-12
Windows Media Player MEDIUM 5.0
CVE-2007-6236EPSS 19%

Microsoft Windows Media Player (WMP) allows remote attackers to cause a denial of service (application crash) via a certain AIFF file that triggers a…

No fix yet
Fix from $1,600 2007-12-04
Jet HIGH 9.3
CVE-2007-6026EPSS 28%

Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allo…

Mitigation only
Fix from $1,950 2007-11-20
Office HIGH 9.3
CVE-2007-3899EPSS 29%

Unspecified vulnerability in Microsoft Word 2000 SP3, Word 2002 SP3, and Office 2004 for Mac allows user-assisted remote attackers to execute arbitra…

Mitigation only
Fix from $1,950 2007-10-09
Windows 2000 HIGH 7.8
CVE-2007-2228EPSS 43%

rpcrt4.dll (aka the RPC runtime library) in Microsoft Windows XP SP2, XP Professional x64 Edition, Server 2003 SP1 and SP2, Server 2003 x64 Edition a…

Mitigation only
Fix from $1,950 2007-10-09
Visual Foxpro HIGH 7.5
CVE-2007-5322EPSS 19%

Insecure method vulnerability in the FPOLE.OCX 6.0.8450.0 ActiveX control in Microsoft Visual FoxPro 6.0 allows remote attackers to execute arbitrary…

No fix yet
Fix from $1,950 2007-10-09
Windows 2003 Server HIGH 7.1
CVE-2007-5133EPSS 23%

Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file…

No fix yet
Fix from $1,950 2007-09-27
Windows Media Player HIGH 7.5
CVE-2007-5095EPSS 15%

Microsoft Windows Media Player (WMP) 9 on Windows XP SP2 invokes Internet Explorer to render HTML documents contained inside some media files, regard…

Mitigation only
Fix from $1,950 2007-09-26
Visual Studio MEDIUM 6.8
CVE-2007-4891EPSS 31%

A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) StartProcess, (2) SyncShell, (3…

No fix yet
Fix from $1,600 2007-09-14
Visual Studio MEDIUM 5.8
CVE-2007-4890EPSS 16%

Absolute directory traversal vulnerability in a certain ActiveX control in the VB To VSI Support Library (VBTOVSI.DLL) 1.0.0.0 in Microsoft Visual St…

No fix yet
Fix from $1,600 2007-09-14
Windows Services For Unix MEDIUM 6.9
CVE-2007-3036

Unspecified vulnerability in the (1) Windows Services for UNIX 3.0 and 3.5, and (2) Subsystem for UNIX-based Applications in Microsoft Windows 2000, …

Mitigation only
Fix from $1,600 2007-09-12
Sql Server HIGH 7.5
CVE-2007-4814EPSS 46%

Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqldmo.dll) 2000.085.2004.00 in Microsoft SQL Server …

No fix yet
Fix from $1,950 2007-09-11
Visual Basic HIGH 9.3
CVE-2007-4776EPSS 49%

Buffer overflow in Microsoft Visual Basic 6.0 and Enterprise Edition 6.0 SP6 allows user-assisted remote attackers to execute arbitrary code via a Vi…

No fix yet
Fix from $1,950 2007-09-10
Internet Explorer HIGH 7.5
CVE-2007-4790EPSS 55%

Stack-based buffer overflow in certain ActiveX controls in (1) FPOLE.OCX 6.0.8450.0 and (2) Foxtlib.ocx, as used in the Microsoft Visual FoxPro 6.0 f…

No fix yet
Fix from $1,950 2007-09-10
Msn Messenger HIGH 9.3
CVE-2007-2931EPSS 55%

Heap-based buffer overflow in Microsoft MSN Messenger 6.2, 7.0, and 7.5, and Live Messenger 8.0 allows user-assisted remote attackers to execute arbi…

No fix yet
Fix from $1,950 2007-08-31
Office HIGH 9.3
CVE-2007-2224EPSS 35%

Object linking and embedding (OLE) Automation, as used in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Office 2004 for Mac, and Visua…

Mitigation only
Fix from $1,950 2007-08-14
Excel HIGH 9.3
CVE-2007-3890EPSS 29%

Microsoft Excel in Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute arbitrary code via a W…

Mitigation only
Fix from $1,950 2007-08-14
Windows Media Player HIGH 7.6
CVE-2007-3035EPSS 25%

Unspecified vulnerability in Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitrary code via a skin file (WMZ…

Mitigation only
Fix from $1,950 2007-08-14
Ie MEDIUM 6.8
CVE-2007-0943EPSS 27%

Unspecified vulnerability in Internet Explorer 5.01 and 6 SP1 allows remote attackers to execute arbitrary code via crafted Cascading Style Sheets (C…

Mitigation only
Fix from $1,600 2007-08-14
Visual Database Tools Database Designer MEDIUM 6.8
CVE-2007-4254EPSS 12%

Stack-based buffer overflow in a certain ActiveX control in VDT70.DLL in Microsoft Visual Database Tools Database Designer 7.0 for Microsoft Visual S…

No fix yet
Fix from $1,600 2007-08-08
Outlook HIGH 8.8
CVE-2007-4040EPSS 13%

Argument injection vulnerability involving Microsoft Outlook and Outlook Express, when certain URIs are registered, allows remote attackers to conduc…

Mitigation only
Fix from $1,950 2007-07-27
Internet Explorer HIGH 7.5
CVE-2007-4042EPSS 10%

Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%00) and sh…

Mitigation only
Fix from $1,950 2007-07-27
Internet Explorer HIGH 9.3
CVE-2007-3924EPSS 14%

Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Netscape installed and certain URIs registered, allows …

Mitigation only
Fix from $1,950 2007-07-21
Directx Sdk MEDIUM 6.8
CVE-2006-4183EPSS 8%

Heap-based buffer overflow in Microsoft DirectX SDK (February 2006) and probably earlier, including 9.0c End User Runtimes, allows context-dependent …

Mitigation only
Fix from $1,600 2007-07-18
Windows 2000 HIGH 10.0
CVE-2007-0040EPSS 39%

The LDAP service in Windows Active Directory in Microsoft Windows 2000 Server SP4, Server 2003 SP1 and SP2, Server 2003 x64 Edition and SP2, and Serv…

Mitigation only
Fix from $1,950 2007-07-10
.net Framework HIGH 9.3
CVE-2007-0041EPSS 31%

The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute a…

Mitigation only
Fix from $1,950 2007-07-10