Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Internet Explorer HIGH 7.5
CVE-2002-0371EPSS 54%

Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 through 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote attackers to exe…

Mitigation only
Fix from $1,950 2002-07-03
Windows Media Player HIGH 7.5
CVE-2002-0372EPSS 14%

Microsoft Windows Media Player versions 6.4 and 7.1 and Media Player for Windows XP allow remote attackers to bypass Internet Explorer's (IE) securit…

Mitigation only
Fix from $1,950 2002-07-03
Excel HIGH 7.5
CVE-2002-0615EPSS 6%

The Windows Media Active Playlist in Microsoft Windows Media Player 7.1 stores information in a well known location on the local file system, allowin…

Mitigation only
Fix from $1,950 2002-07-03
Commerce Server HIGH 7.5
CVE-2002-0622EPSS 19%

The Office Web Components (OWC) package installer for Microsoft Commerce Server 2000 allows remote attackers to execute commands by passing the comma…

Mitigation only
Fix from $1,950 2002-07-03
Commerce Server HIGH 7.5
CVE-2002-0623EPSS 20%

Buffer overflow in AuthFilter ISAPI filter on Microsoft Commerce Server 2000 and 2002 allows remote attackers to execute arbitrary code via long auth…

Mitigation only
Fix from $1,950 2002-07-03
Windows Media Player HIGH 7.2
CVE-2002-0373

The Windows Media Device Manager (WMDM) Service in Microsoft Windows Media Player 7.1 on Windows 2000 systems allows local users to obtain LocalSyste…

Mitigation only
Fix from $1,950 2002-07-03
Commerce Server MEDIUM 5.0
CVE-2002-0620EPSS 12%

Buffer overflow in the Profile Service of Microsoft Commerce Server 2000 allows remote attackers to cause the server to fail or run arbitrary code in…

Mitigation only
Fix from $1,600 2002-07-03
Commerce Server MEDIUM 5.0
CVE-2002-0621EPSS 17%

Buffer overflow in the Office Web Components (OWC) package installer used by Microsoft Commerce Server 2000 allows remote attackers to cause the proc…

Mitigation only
Fix from $1,600 2002-07-03
Outlook Express HIGH 7.5
CVE-2002-0285EPSS 12%

Outlook Express 5.5 and 6.0 on Windows treats a carriage return ("CR") in a message header as if it were a valid carriage return/line feed combinatio…

Mitigation only
Fix from $1,950 2002-05-31
Msn Chat Control HIGH 7.5
CVE-2002-0155EPSS 24%

Buffer overflow in Microsoft MSN Chat ActiveX Control, as used in MSN Messenger 4.5 and 4.6, and Exchange Instant Messenger 4.5 and 4.6, allows remot…

Mitigation only
Fix from $1,950 2002-05-29
Sql Server HIGH 7.5
CVE-2002-0154EPSS 25%

Buffer overflows in extended stored procedures for Microsoft SQL Server 7.0 and 2000 allow remote attackers to cause a denial of service or execute a…

Mitigation only
Fix from $1,950 2002-05-16
Outlook HIGH 7.5
CVE-2002-1056EPSS 19%

Microsoft Outlook 2000 and 2002, when configured to use Microsoft Word as the email editor, does not block scripts that are used while editing email …

Mitigation only
Fix from $1,950 2002-05-16
Internet Information Services MEDIUM 5.0
CVE-2002-0224EPSS 22%

The MSDTC (Microsoft Distributed Transaction Service Coordinator) for Microsoft Windows 2000, Microsoft IIS 5.0 and SQL Server 6.5 through SQL 2000 0…

Mitigation only
Fix from $1,600 2002-05-16
Internet Information Server HIGH 7.5
CVE-2002-0071EPSS 34%

Buffer overflow in the ism.dll ISAPI extension that implements HTR scripting in Internet Information Server (IIS) 4.0 and 5.0 allows attackers to cau…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0074EPSS 34%

Cross-site scripting vulnerability in Help File search facility for Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to emb…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0075EPSS 34%

Cross-site scripting vulnerability for Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to execute arbitrary script as othe…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0079EPSS 77%

Buffer overflow in the chunked encoding transfer mechanism in Internet Information Server (IIS) 4.0 and 5.0 Active Server Pages allows attackers to c…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0147EPSS 62%

Buffer overflow in the ASP data transfer mechanism in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to cause a denial o…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0148EPSS 64%

Cross-site scripting vulnerability in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows remote attackers to execute arbitrary script as other…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0149EPSS 63%

Buffer overflow in ASP Server-Side Include Function in IIS 4.0, 5.0 and 5.1 allows remote attackers to cause a denial of service and possibly execute…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server HIGH 7.5
CVE-2002-0150EPSS 49%

Buffer overflow in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to spoof the safety check for HTTP headers and cause a…

Mitigation only
Fix from $1,950 2002-04-22
Entourage HIGH 7.5
CVE-2002-0152EPSS 17%

Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary cod…

Mitigation only
Fix from $1,950 2002-04-22
Ie HIGH 7.5
CVE-2002-0153EPSS 18%

Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, a…

Mitigation only
Fix from $1,950 2002-04-22
Internet Information Server MEDIUM 5.0
CVE-2002-0072EPSS 57%

The w3svc.dll ISAPI filter in Front Page Server Extensions and ASP.NET for Internet Information Server (IIS) 4.0, 5.0, and 5.1 does not properly hand…

Mitigation only
Fix from $1,600 2002-04-22
Internet Information Server MEDIUM 5.0
CVE-2002-0073EPSS 56%

The FTP service in Internet Information Server (IIS) 4.0, 5.0 and 5.1 allows attackers who have established an FTP session to cause a denial of servi…

Mitigation only
Fix from $1,600 2002-04-22
Windows 2000 HIGH 7.2
CVE-2002-0151

Buffer overflow in Multiple UNC Provider (MUP) in Microsoft Windows operating systems allows local users to cause a denial of service or possibly gai…

Mitigation only
Fix from $1,950 2002-04-04
Windows 2000 HIGH 7.6
CVE-2002-0070EPSS 18%

Buffer overflow in Windows Shell (used as the Windows Desktop) allows local and possibly remote attackers to execute arbitrary code via a custom URL …

Mitigation only
Fix from $1,950 2002-03-15
Virtual Machine MEDIUM 5.0
CVE-2002-0058EPSS 9%

Vulnerability in Java Runtime Environment (JRE) allows remote malicious web sites to hijack or sniff a web client's sessions, when an HTTP proxy is b…

Mitigation only
Fix from $1,600 2002-03-15
Windows 2000 HIGH 10.0
CVE-2002-0018EPSS 16%

In Microsoft Windows NT and Windows 2000, a trusting domain that receives authorization information from a trusted domain does not verify that the tr…

Mitigation only
Fix from $1,950 2002-03-08
Commerce Server HIGH 7.5
CVE-2002-0050EPSS 13%

Buffer overflow in AuthFilter ISAPI filter on Microsoft Commerce Server 2000 allows remote attackers to execute arbitrary code via long authenticatio…

Mitigation only
Fix from $1,950 2002-03-08