Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Office HIGH 9.3
CVE-2007-0209EPSS 29%

Microsoft Word in Office 2000 SP3, XP SP3, Office 2003 SP2, Works Suite 2004 to 2006, and Office 2004 for Mac allows user-assisted remote attackers t…

Mitigation only
Fix from $1,950 2007-02-13
Learning Essentials HIGH 9.3
CVE-2006-1311EPSS 31%

The RichEdit component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1; Office 2000 SP3, XP SP3, 2003 SP2, and Office 2004 for Mac; and Learning …

Mitigation only
Fix from $1,950 2007-02-13
Step By Step Interactive Training HIGH 9.3
CVE-2006-3448EPSS 37%

Buffer overflow in the Step-by-Step Interactive Training in Microsoft Windows 2000 SP4, XP SP2 and Professional, and Server 2003 SP1 allows remote at…

Mitigation only
Fix from $1,950 2007-02-13
Antigen HIGH 9.3
CVE-2006-5270EPSS 30%

Integer overflow in the Microsoft Malware Protection Engine (mpengine.dll), as used by Windows Live OneCare, Antigen, Defender, and Forefront Securit…

Mitigation only
Fix from $1,950 2007-02-13
Visual Studio .net HIGH 9.3
CVE-2007-0025EPSS 37%

The MFC component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 and Visual Studio .NET 2000, 2002 SP1, 2003, and 2003 SP1 allows user-assisted …

Mitigation only
Fix from $1,950 2007-02-13
Windows 2000 HIGH 9.3
CVE-2007-0214EPSS 26%

The HTML Help ActiveX control (Hhctrl.ocx) in Microsoft Windows 2000 SP3, XP SP2 and Professional, 2003 SP1 allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2007-02-13
Windows 2000 HIGH 7.6
CVE-2007-0026EPSS 25%

The OLE Dialog component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 allows user-assisted remote attackers to execute arbitrary code via an R…

Mitigation only
Fix from $1,950 2007-02-13
Windows 2003 Server HIGH 7.2
CVE-2007-0211

The hardware detection functionality in the Windows Shell in Microsoft Windows XP SP2 and Professional, and Server 2003 SP1 allows local users to gai…

Mitigation only
Fix from $1,950 2007-02-13
Windows Mobile HIGH 7.8
CVE-2007-0878EPSS 20%

Unspecified vulnerability in Microsoft Internet Explorer on Windows Mobile 5.0 allows remote attackers to cause a denial of service (loss of browser …

Mitigation only
Fix from $1,950 2007-02-12
Word HIGH 7.6
CVE-2007-0870EPSS 21%

Unspecified vulnerability in Microsoft Word 2000 allows remote attackers to cause a denial of service (crash) via unknown vectors, a different vulner…

Mitigation only
Fix from $1,950 2007-02-11
Access HIGH 8.8
CVE-2007-0671 KEVEPSS 42%

Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attack…

Mitigation only
Fix from $1,950 2007-02-03
Windows Mobile HIGH 7.1
CVE-2007-0674EPSS 16%

Pictures and Videos on Windows Mobile 5.0 and Windows Mobile 2003 and 2003SE for Smartphones and PocketPC allows user-assisted remote attackers to ca…

Mitigation only
Fix from $1,950 2007-02-03
Ie HIGH 7.8
CVE-2007-0612EPSS 43%

Multiple ActiveX controls in Microsoft Windows 2000, XP, 2003, and Vista allows remote attackers to cause a denial of service (Internet Explorer cras…

No fix yet
Fix from $1,950 2007-01-31
Office HIGH 9.3
CVE-2007-0515EPSS 38%

Unspecified vulnerability in Microsoft Word allows user-assisted remote attackers to execute arbitrary code on Word 2000, and cause a denial of servi…

Mitigation only
Fix from $1,950 2007-01-26
Visual Studio MEDIUM 6.8
CVE-2007-0468EPSS 25%

Stack-based buffer overflow in rcdll.dll in msdev.exe in Visual C++ (MSVC) in Microsoft Visual Studio 6.0 SP6 allows user-assisted remote attackers t…

No fix yet
Fix from $1,600 2007-01-24
Html Help Workshop HIGH 9.3
CVE-2007-0427EPSS 31%

Stack-based buffer overflow in Microsoft Help Workshop 4.03.0002 allows user-assisted remote attackers to execute arbitrary code via a help project (…

No fix yet
Fix from $1,950 2007-01-23
Html Help Workshop HIGH 9.3
CVE-2007-0352EPSS 37%

Stack-based buffer overflow in Microsoft Help Workshop 4.03.0002 allows user-assisted remote attackers to execute arbitrary code via a crafted .cnt f…

No fix yet
Fix from $1,950 2007-01-19
Excel HIGH 9.3
CVE-2007-0029EPSS 30%

Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-assisted remote attackers to execute arbitrary code via a mal…

Mitigation only
Fix from $1,950 2007-01-09
Office HIGH 9.3
CVE-2007-0033EPSS 32%

Microsoft Outlook 2002 and 2003 allows user-assisted remote attackers to execute arbitrary code via a malformed VEVENT record in an .iCal meeting req…

Mitigation only
Fix from $1,950 2007-01-09
Office HIGH 9.3
CVE-2007-0034EPSS 37%

Buffer overflow in the Advanced Search (Finder.exe) feature of Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to execut…

Mitigation only
Fix from $1,950 2007-01-09
Internet Information Server HIGH 7.8
CVE-2007-0087EPSS 24%

Microsoft Internet Information Services (IIS), when accessed through a TCP connection with a large window size, allows remote attackers to cause a de…

Mitigation only
Fix from $1,950 2007-01-05
Message Compiler MEDIUM 6.6
CVE-2007-0084

Buffer overflow in the Windows NT Message Compiler (MC) 1.00.5239 on Microsoft Windows XP allows local users to gain privileges via a long MC-filenam…

Mitigation only
Fix from $1,600 2007-01-05
Windows 2003 Server HIGH 10.0
CVE-2006-6901EPSS 14%

Unspecified vulnerability in the Bluetooth stack in Microsoft Windows allows remote attackers to gain administrative access (aka Remote Root) via uns…

No fix yet
Fix from $1,950 2006-12-31
Windows 2003 Server HIGH 10.0
CVE-2006-6902EPSS 14%

Unspecified vulnerability in the Bluetooth stack in Microsoft Windows Mobile Pocket PC edition allows remote attackers to gain administrative access …

Mitigation only
Fix from $1,950 2006-12-31
Office HIGH 9.3
CVE-2006-5574EPSS 24%

Unspecified vulnerability in the Brazilian Portuguese Grammar Checker in Microsoft Office 2003 and the Multilingual Interface for Office 2003, Projec…

Mitigation only
Fix from $1,950 2006-12-31
Windows 2000 MEDIUM 6.9
CVE-2006-6696

Double free vulnerability in Microsoft Windows 2000, XP, 2003, and Vista allows local users to gain privileges by calling the MessageBox function wit…

Mitigation only
Fix from $1,600 2006-12-22
Ie MEDIUM 5.0
CVE-2006-6659EPSS 17%

The Microsoft Office Outlook Recipient ActiveX control (ole32.dll) in Windows XP SP2 allows remote attackers to cause a denial of service (Internet E…

No fix yet
Fix from $1,600 2006-12-20
Project Server MEDIUM 6.5
CVE-2006-6617EPSS 20%

projectserver/logon/pdsrequest.asp in Microsoft Project Server 2003 allows remote authenticated users to obtain the MSProjectUser password for a SQL …

Mitigation only
Fix from $1,600 2006-12-18
Internet Information Services HIGH 7.5
CVE-2006-6578EPSS 7%

Microsoft Internet Information Services (IIS) 5.1 permits the IUSR_Machine account to execute non-EXE files such as .COM files, which allows attacker…

No fix yet
Fix from $1,950 2006-12-15
Office HIGH 9.3
CVE-2006-6561EPSS 40%

Unspecified vulnerability in Microsoft Word 2000, 2002, and Word Viewer 2003 allows user-assisted remote attackers to execute arbitrary code via a cr…

No fix yet
Fix from $1,950 2006-12-14