Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Java Virtual Machine MEDIUM 6.4
CVE-2004-0723EPSS 13%

Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets f…

No fix yet
Fix from $1,600 2004-07-27
Systems Management Server MEDIUM 5.0
CVE-2004-0728EPSS 25%

The Remote Control Client service in Microsoft's Systems Management Server (SMS) 2.50.2726.0 allows remote attackers to cause a denial of service (cr…

Mitigation only
Fix from $1,600 2004-07-27
Ie HIGH 10.0
CVE-2004-0420EPSS 46%

The Windows Shell application in Windows 98, Windows ME, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to…

No fix yet
Fix from $1,950 2004-07-07
Ie MEDIUM 5.1
CVE-2004-0475EPSS 10%

The showHelp function in Internet Explorer 6 on Windows XP Pro allows remote attackers to execute arbitrary local .CHM files via a double backward sl…

No fix yet
Fix from $1,600 2004-07-07
Ie MEDIUM 5.0
CVE-2004-0479EPSS 26%

Internet Explorer 6 allows remote attackers to cause a denial of service (crash) via Javascript that creates a new popup window and disables the imag…

Mitigation only
Fix from $1,600 2004-07-07
Ie HIGH 7.5
CVE-2003-1041EPSS 53%

Internet Explorer 5.x and 6.0 allows remote attackers to execute arbitrary programs via a modified directory traversal attack using a URL containing …

No fix yet
Fix from $1,950 2004-06-14
Jet HIGH 7.5
CVE-2004-0197EPSS 26%

Buffer overflow in Microsoft Jet Database Engine 4.0 allows remote attackers to execute arbitrary code via a specially-crafted database query.

Mitigation only
Fix from $1,950 2004-06-01
Sharepoint Portal Server MEDIUM 6.8
CVE-2004-0379EPSS 8%

Multiple cross-site scripting (XSS) vulnerabilities in Microsoft SharePoint Portal Server 2001 allow remote attackers to process arbitrary web conten…

Mitigation only
Fix from $1,600 2004-05-04
Ie HIGH 7.5
CVE-2003-0513EPSS 10%

Microsoft Internet Explorer allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot)…

No fix yet
Fix from $1,950 2004-04-15
Windows 2000 HIGH 7.5
CVE-2003-0818EPSS 82%

Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries …

Mitigation only
Fix from $1,950 2004-03-03
Data Access Components HIGH 10.0
CVE-2003-0903EPSS 37%

Buffer overflow in a component of Microsoft Data Access Components (MDAC) 2.5 through 2.8 allows remote attackers to execute arbitrary code via a mal…

Mitigation only
Fix from $1,950 2004-02-17
Baseline Security Analyzer MEDIUM 5.0
CVE-2004-2091

Microsoft Baseline Security Analyzer (MBSA) 1.2 does not correctly identify systems that have been patched but remain vulnerable to exploit until the…

Mitigation only
Fix from $1,600 2004-02-10
Ie MEDIUM 5.0
CVE-2004-2090EPSS 16%

Microsoft Internet Explorer 5.0.1 through 6.0 allows remote attackers to determine the existence of arbitrary files via the VBScript LoadPicture meth…

No fix yet
Fix from $1,600 2004-02-07
Ie HIGH 7.5
CVE-2003-0823EPSS 26%

Internet Explorer 6 SP1 and earlier allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by calli…

Mitigation only
Fix from $1,950 2004-02-03
Ie HIGH 10.0
CVE-2003-1027EPSS 38%

Internet Explorer 5.01 through 6 SP1 allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by usin…

Mitigation only
Fix from $1,950 2004-01-20
Ie HIGH 9.3
CVE-2003-1026EPSS 39%

Internet Explorer 5.01 through 6 SP1 allows remote attackers to bypass zone restrictions via a javascript protocol URL in a sub-frame, which is added…

Mitigation only
Fix from $1,950 2004-01-20
Ie MEDIUM 5.0
CVE-2003-1028EPSS 19%

The download function of Internet Explorer 6 SP1 allows remote attackers to obtain the cache directory name via an HTTP response with an invalid Cont…

Mitigation only
Fix from $1,600 2004-01-20
Outlook HIGH 8.8
CVE-2003-1378EPSS 16%

Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs vi…

No fix yet
Fix from $1,950 2003-12-31
Windows Nt HIGH 7.2
CVE-2003-1407

Buffer overflow in cmd.exe in Windows NT 4.0 may allow local users to execute arbitrary code via a long pathname argument to the cd command.

No fix yet
Fix from $1,950 2003-12-31
Windows Media Player MEDIUM 5.1
CVE-2003-1107EPSS 5%

The DHTML capability in Microsoft Windows Media Player (WMP) 6.4, 7.0, 7.1, and 9 may run certain URL commands from a security zone that is less trus…

Mitigation only
Fix from $1,600 2003-12-31
Pocket Ie MEDIUM 5.0
CVE-2003-1275EPSS 17%

Pocket Internet Explorer (PIE) 3.0 allows remote attackers to cause a denial of service (crash) via a Javascript function that uses the object.innerH…

No fix yet
Fix from $1,600 2003-12-31
Ie MEDIUM 5.0
CVE-2003-1559EPSS 16%

Microsoft Internet Explorer 5.22, and other 5 through 6 SP1 versions, sends Referer headers containing https:// URLs in requests for http:// URLs, wh…

Mitigation only
Fix from $1,600 2003-12-31
Word HIGH 7.5
CVE-2003-0821EPSS 19%

Microsoft Excel 97, 2000, and 2002 allows remote attackers to execute arbitrary code via a spreadsheet with a malicious XLM (Excel 4) macro that bypa…

Mitigation only
Fix from $1,950 2003-12-15
Frontpage Server Extensions HIGH 7.5
CVE-2003-0822EPSS 81%

Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to ex…

Mitigation only
Fix from $1,950 2003-12-15
Frontpage Server Extensions MEDIUM 5.0
CVE-2003-0824EPSS 35%

Unknown vulnerability in the SmartHTML interpreter (shtml.dll) in Microsoft FrontPage Server Extensions 2000 and 2002, and Microsoft SharePoint Team …

Mitigation only
Fix from $1,600 2003-12-15
Ie HIGH 7.5
CVE-2003-0838EPSS 38%

Internet Explorer allows remote attackers to bypass zone restrictions to inject and execute arbitrary programs by creating a popup window and inserti…

Mitigation only
Fix from $1,950 2003-11-17
Windows 2003 Server MEDIUM 5.0
CVE-2003-0839EPSS 14%

Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files …

Mitigation only
Fix from $1,600 2003-11-17
Word HIGH 7.5
CVE-2003-0664

Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro securit…

Mitigation only
Fix from $1,950 2003-10-20
Access HIGH 7.5
CVE-2003-0665EPSS 30%

Buffer overflow in the ActiveX control for Microsoft Access Snapshot Viewer for Access 97, 2000, and 2002 allows remote attackers to execute arbitrar…

Mitigation only
Fix from $1,950 2003-10-20
Wordperfect Converter HIGH 7.5
CVE-2003-0666EPSS 22%

Buffer overflow in Microsoft Wordperfect Converter allows remote attackers to execute arbitrary code via modified data offset and data size parameter…

Mitigation only
Fix from $1,950 2003-10-20