Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Outlook Express MEDIUM 6.8
CVE-2006-2386EPSS 29%

Unspecified vulnerability in Microsoft Outlook Express 6 and earlier allows remote attackers to execute arbitrary code via a crafted contact record i…

Mitigation only
Fix from $1,600 2006-12-13
Windows Media Player MEDIUM 6.8
CVE-2006-4702EPSS 27%

Buffer overflow in the Windows Media Format Runtime in Microsoft Windows Media Player (WMP) 6.4 and Windows XP SP2, Server 2003, and Server 2003 SP1 …

Mitigation only
Fix from $1,600 2006-12-13
Windows 2003 Server HIGH 10.0
CVE-2006-5583EPSS 53%

Buffer overflow in the SNMP Service in Microsoft Windows 2000 SP4, XP SP2, Server 2003, Server 2003 SP1, and possibly other versions allows remote at…

Mitigation only
Fix from $1,950 2006-12-12
Office HIGH 9.3
CVE-2006-6456EPSS 31%

Unspecified vulnerability in Microsoft Word 2000, 2002, and 2003 and Word Viewer 2003 allows remote attackers to execute code via unspecified vectors…

Mitigation only
Fix from $1,950 2006-12-11
Office HIGH 9.3
CVE-2006-5994EPSS 31%

Unspecified vulnerability in Microsoft Word 2000 and 2002, Office Word and Word Viewer 2003, Word 2004 and 2004 v. X for Mac, and Works 2004, 2005, a…

Mitigation only
Fix from $1,950 2006-12-06
Teredo HIGH 7.5
CVE-2006-6264EPSS 14%

Teredo creates trusted peer entries for arbitrary incoming source Teredo addresses, even if the low 32 bits represent an intranet address, which migh…

Mitigation only
Fix from $1,950 2006-12-04
Teredo MEDIUM 6.8
CVE-2006-6263EPSS 12%

Teredo clients, when source routing is enabled, recognize a Routing header in an encapsulated IPv6 packet and send the packet to the next hop, which …

Mitigation only
Fix from $1,600 2006-12-04
Teredo MEDIUM 6.8
CVE-2006-6266EPSS 12%

Teredo clients, when following item 6 of RFC4380 section 5.2.3, start direct IPv6 connectivity tests (aka ping tests) in response to packets from non…

Mitigation only
Fix from $1,600 2006-12-04
Teredo MEDIUM 5.8
CVE-2006-6265

Teredo clients, when located behind a restricted NAT, allow remote attackers to establish an inbound connection without the guessing required to find…

Mitigation only
Fix from $1,600 2006-12-04
Windows Media Player HIGH 7.5
CVE-2006-6134EPSS 41%

Heap-based buffer overflow in the WMCheckURLScheme function in WMVCORE.DLL in Microsoft Windows Media Player (WMP) 10.00.00.4036 on Windows XP SP2, S…

No fix yet
Fix from $1,950 2006-11-28
Ie MEDIUM 6.4
CVE-2006-5913EPSS 5%

Microsoft Internet Explorer 7 allows remote attackers to (1) cause a security certificate from a secure web site to appear invalid via a link to res:…

No fix yet
Fix from $1,600 2006-11-15
Windows 2000 HIGH 7.5
CVE-2006-3445EPSS 41%

Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 a…

Mitigation only
Fix from $1,950 2006-11-14
Ie HIGH 7.5
CVE-2006-5884EPSS 7%

Multiple unspecified vulnerabilities in DirectAnimation ActiveX controls for Microsoft Internet Explorer 5.01 through 6 have unknown impact and remot…

Mitigation only
Fix from $1,950 2006-11-14
Ie MEDIUM 5.1
CVE-2006-4687EPSS 25%

Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via crafted layout combinations involving DIV tags and H…

Mitigation only
Fix from $1,600 2006-11-14
Ie MEDIUM 5.0
CVE-2006-5805EPSS 6%

Microsoft Internet Explorer 7 allows remote attackers to cause a security certificate from a secure web site to appear invalid via a link to res://ie…

No fix yet
Fix from $1,600 2006-11-08
Xml Core Services HIGH 7.6
CVE-2006-5745EPSS 76%

Unspecified vulnerability in the setRequestHeader method in the XMLHTTP (XML HTTP) ActiveX Control 4.0 in Microsoft XML Core Services 4.0 on Windows,…

No fix yet
Fix from $1,950 2006-11-06
Visual Studio .net MEDIUM 6.8
CVE-2006-4704EPSS 44%

Cross-zone scripting vulnerability in the WMI Object Broker (WMIScriptUtils.WMIObjectBroker2) ActiveX control (WmiScriptUtils.dll) in Microsoft Visua…

No fix yet
Fix from $1,600 2006-11-01
Ie MEDIUM 6.4
CVE-2006-5544EPSS 20%

Visual truncation vulnerability in Microsoft Internet Explorer 7 allows remote attackers to spoof the address bar and possibly conduct phishing attac…

No fix yet
Fix from $1,600 2006-10-26
Windows Digital Rights Management HIGH 7.5
CVE-2006-5448EPSS 12%

The drmstor.dll ActiveX object in Microsoft Windows Digital Rights Management System (DRM) allows remote attackers to cause a denial of service (cras…

Mitigation only
Fix from $1,950 2006-10-23
Class Package Export Tool HIGH 7.5
CVE-2006-5395EPSS 8%

Buffer overflow in Microsoft Class Package Export Tool (aka clspack.exe) allows context-dependent attackers to execute arbitrary code via a long stri…

No fix yet
Fix from $1,950 2006-10-18
Office HIGH 9.3
CVE-2006-3434EPSS 30%

Unspecified vulnerability in Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrar…

Mitigation only
Fix from $1,950 2006-10-10
Office HIGH 9.3
CVE-2006-3647EPSS 26%

Integer overflow in Microsoft Word 2000, 2002, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrary code vi…

Mitigation only
Fix from $1,950 2006-10-10
Office HIGH 9.3
CVE-2006-3650EPSS 37%

Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac do not properly parse the length of a chart record, which allows remote user-assisted …

Mitigation only
Fix from $1,950 2006-10-10
Office HIGH 9.3
CVE-2006-3651EPSS 31%

Unspecified vulnerability in Microsoft Word 2000, 2002, and Office 2003 allows remote user-assisted attackers to execute arbitrary code via a crafted…

Mitigation only
Fix from $1,950 2006-10-10
Office HIGH 9.3
CVE-2006-3864EPSS 32%

Unspecified vulnerability in mso.dll in Microsoft Office 2000, XP, and 2003, and Microsoft PowerPoint 2000, XP, and 2003, allows remote user-assisted…

Mitigation only
Fix from $1,950 2006-10-10
Access HIGH 9.3
CVE-2006-3877EPSS 13%

Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2004 for Mac, and Office v.X for Mac allows user-a…

No fix yet
Fix from $1,950 2006-10-10
Office HIGH 9.3
CVE-2006-4693EPSS 23%

Unspecified vulnerability in Microsoft Word 2004 for Mac and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafte…

Mitigation only
Fix from $1,950 2006-10-10
Xml Core Services HIGH 7.5
CVE-2006-4686EPSS 29%

Buffer overflow in the Extensible Stylesheet Language Transformations (XSLT) processing in Microsoft XML Parser 2.6 and XML Core Services 3.0 through…

Mitigation only
Fix from $1,950 2006-10-10
Office MEDIUM 5.1
CVE-2006-2387EPSS 12%

Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, Excel Viewer 2003, and Microsoft Works Suite 2004 through 2…

Mitigation only
Fix from $1,600 2006-10-10
Excel MEDIUM 5.1
CVE-2006-3867EPSS 9%

Unspecified vulnerability in Microsoft Excel 2000, 2002, 2003, 2004 for Mac, v.X for Mac, and Excel Viewer 2003 allows user-assisted attackers to exe…

Mitigation only
Fix from $1,600 2006-10-10