Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Windows 95 HIGH 7.6
CVE-2000-0330EPSS 15%

The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access UR…

Mitigation only
Fix from $1,950 1999-11-12
Ie MEDIUM 5.1
CVE-2000-0329EPSS 8%

A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, ak…

Mitigation only
Fix from $1,600 1999-11-11
Windows Nt HIGH 7.2
CVE-1999-0898EPSS 7%

Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler reque…

Mitigation only
Fix from $1,950 1999-11-04
Windows Nt HIGH 7.2
CVE-1999-0899

The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an…

Mitigation only
Fix from $1,950 1999-11-04
Internet Explorer HIGH 7.5
CVE-1999-0354EPSS 5%

Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which do…

Mitigation only
Fix from $1,950 1999-11-01
Windows Nt MEDIUM 5.0
CVE-1999-1234EPSS 13%

LSA (LSASS.EXE) in Windows NT 4.0 allows remote attackers to cause a denial of service via a NULL policy handle in a call to (1) SamrOpenDomain, (2) …

Mitigation only
Fix from $1,600 1999-10-26
Java Virtual Machine HIGH 9.3
CVE-1999-0766EPSS 7%

The Microsoft Java Virtual Machine allows a malicious Java applet to execute arbitrary commands outside of the sandbox environment.

Mitigation only
Fix from $1,950 1999-10-21
Virtual Machine HIGH 7.6
CVE-2000-0327EPSS 12%

Microsoft Virtual Machine (VM) allows remote attackers to escape the Java sandbox and execute commands via an applet containing an illegal cast opera…

Mitigation only
Fix from $1,950 1999-10-21
Commercial Internet System HIGH 7.5
CVE-1999-0777EPSS 12%

IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions.

Mitigation only
Fix from $1,950 1999-09-23
Terminal Server HIGH 7.5
CVE-1999-0909EPSS 12%

Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed …

Mitigation only
Fix from $1,950 1999-09-20
Windows Nt HIGH 9.0
CVE-1999-0886EPSS 22%

The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager.

No fix yet
Fix from $1,950 1999-09-17
Hotmail MEDIUM 5.1
CVE-1999-0750EPSS 9%

Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the user's Hotmail account.

No fix yet
Fix from $1,600 1999-09-13
Commercial Internet System MEDIUM 5.0
CVE-1999-0910EPSS 6%

Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be cached by a proxy and inadvert…

Mitigation only
Fix from $1,600 1999-09-10
Frontpage MEDIUM 5.0
CVE-1999-1016EPSS 8%

Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allow…

No fix yet
Fix from $1,600 1999-08-27
Frontpage MEDIUM 5.0
CVE-1999-1052EPSS 14%

Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document r…

Mitigation only
Fix from $1,600 1999-08-24
Windows Nt MEDIUM 5.0
CVE-2000-0328EPSS 25%

Windows NT 4.0 generates predictable random TCP initial sequence numbers (ISN), which allows remote attackers to perform spoofing and session hijacki…

Mitigation only
Fix from $1,600 1999-08-24
Jet HIGH 7.2
CVE-2000-0325

The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulnerability.

Mitigation only
Fix from $1,950 1999-08-20
Internet Information Server HIGH 7.1
CVE-1999-0725EPSS 25%

When IIS is run with a default language of Chinese, Korean, or Japanese, it allows a remote attacker to view the source code of certain files, a.k.a.…

Mitigation only
Fix from $1,950 1999-08-19
Windows 2000 HIGH 7.5
CVE-1999-0875EPSS 10%

DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes.

Mitigation only
Fix from $1,950 1999-08-11
Commercial Internet System MEDIUM 5.0
CVE-1999-0867EPSS 22%

Denial of service in IIS 4.0 via a flood of HTTP requests with malformed headers.

Mitigation only
Fix from $1,600 1999-08-11
Windows 2000 MEDIUM 6.2
CVE-1999-0700

Buffer overflow in Microsoft Phone Dialer (dialer.exe), via a malformed dialer entry in the dialer.ini file.

Mitigation only
Fix from $1,600 1999-07-29
Jet HIGH 7.6
CVE-2000-0323EPSS 6%

The Microsoft Jet database engine allows an attacker to modify text files via a database query, aka the "Text I-ISAM" vulnerability.

Mitigation only
Fix from $1,950 1999-07-28
Windows Nt MEDIUM 5.0
CVE-1999-0224EPSS 17%

Denial of service in Windows NT messenger service through a long username.

Mitigation only
Fix from $1,600 1999-07-23
Windows 2000 HIGH 7.8
CVE-1999-0721EPSS 9%

Denial of service in Windows NT Local Security Authority (LSA) through a malformed LSA request.

Mitigation only
Fix from $1,950 1999-07-20
Data Access Components HIGH 10.0
CVE-1999-1011EPSS 77%

The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allow…

Mitigation only
Fix from $1,950 1999-07-19
Windows Nt HIGH 7.8
CVE-1999-0728EPSS 6%

A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them.

Mitigation only
Fix from $1,950 1999-07-06
Internet Information Server MEDIUM 5.0
CVE-1999-1478EPSS 18%

The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpot via a URL that includes the…

Mitigation only
Fix from $1,600 1999-07-06
Windows 2000 HIGH 7.8
CVE-1999-0918EPSS 26%

Denial of service in various Windows systems via malformed, fragmented IGMP packets.

Mitigation only
Fix from $1,950 1999-07-03
Windows 2000 HIGH 7.8
CVE-1999-0726EPSS 8%

An attacker can conduct a denial of service in Windows NT by executing a program with a malformed file image header.

Mitigation only
Fix from $1,950 1999-06-30
Windows Nt MEDIUM 5.0
CVE-1999-0140EPSS 14%

Denial of service in RAS/PPTP on NT systems.

No fix yet
Fix from $1,600 1999-06-30