Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2009-0077EPSS 78% The firewall engine in Microsoft Forefront Threat Management Gateway, Medium Business Edition (TMG MBE); and Internet Security and Acceleration (ISA)… Forefront Threat Management Gateway Mitigation only Fix from $1,6002009-04-15 HIGH 10.0 CVE-2009-1216EPSS 24% Multiple unspecified vulnerabilities in (1) unlzh.c and (2) unpack.c in the gzip libraries in Microsoft Windows Server 2008, Windows Services for UNI… Subsystem For Unix Based Applications Mitigation only Fix from $1,9502009-04-01 HIGH 8.8 CVE-2009-0238 KEVEPSS 43% Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Compatibility Pack for Word, Excel, … Excel Mitigation only Fix from $1,9502009-02-25 HIGH 7.8 CVE-2008-6194EPSS 11% Memory leak in the DNS server in Microsoft Windows allows remote attackers to cause a denial of service (memory consumption) via DNS packets. NOTE: … Windows Mitigation only Fix from $1,9502009-02-19 MEDIUM 5.0 CVE-2009-0647EPSS 17% msnmsgr.exe in Windows Live Messenger (WLM) 2009 build 14.0.8064.206, and other 14.0.8064.x builds, allows remote attackers to cause a denial of serv… Windows Live Messenger Mitigation only Fix from $1,6002009-02-19 HIGH 9.3 CVE-2009-0095EPSS 23% Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 does not properly validate object data in Visio files, which allows remote attackers to execu… Visio Mitigation only Fix from $1,9502009-02-10 HIGH 9.3 CVE-2009-0096EPSS 23% Microsoft Office Visio 2002 SP2, 2003 SP3, and 2007 SP1 does not properly perform memory copy operations for object data, which allows remote attacke… Visio Mitigation only Fix from $1,9502009-02-10 HIGH 9.3 CVE-2009-0097EPSS 23% Microsoft Office Visio 2002 SP2 and 2003 SP3 does not properly validate memory allocation for Visio files, which allows remote attackers to execute a… Visio Mitigation only Fix from $1,9502009-02-10 HIGH 9.3 CVE-2009-0098EPSS 25% Microsoft Exchange 2000 Server SP3, Exchange Server 2003 SP2, and Exchange Server 2007 SP1 do not properly interpret Transport Neutral Encapsulation … Exchange Server Mitigation only Fix from $1,9502009-02-10 MEDIUM 5.0 CVE-2009-0099EPSS 26% The Electronic Messaging System Microsoft Data Base (EMSMDB32) provider in Microsoft Exchange 2000 Server SP3 and Exchange Server 2003 SP2, as used i… Exchange Server Mitigation only Fix from $1,6002009-02-10 MEDIUM 5.0 CVE-2009-0419EPSS 15% Microsoft XML Core Services, as used in Microsoft Expression Web, Office, Internet Explorer 6 and 7, and other products, does not properly restrict a… Xml Core Services Mitigation only Fix from $1,6002009-02-04 HIGH 8.8 CVE-2009-0244EPSS 30% Directory traversal vulnerability in the OBEX FTP Service in the Microsoft Bluetooth stack in Windows Mobile 6 Professional, and probably Windows Mob… Windows Mobile No fix yet Fix from $1,9502009-01-21 HIGH 10.0 CVE-2009-0133EPSS 67% Buffer overflow in Microsoft HTML Help Workshop 4.74 and earlier allows context-dependent attackers to execute arbitrary code via a .hhp file with a … Html Help Workshop No fix yet Fix from $1,9502009-01-15 HIGH 7.6 CVE-1999-1593EPSS 18% Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service (connectivity loss) or steal credentials via a 1Ch regist… Windows 2000 No fix yet Fix from $1,9502009-01-15 HIGH 7.5 CVE-2003-1567EPSS 25% The undocumented TRACK method in Microsoft Internet Information Services (IIS) 5.0 returns the content of the original request in the body of the res… Internet Information Services No fix yet Fix from $1,9502009-01-15 MEDIUM 5.0 CVE-2003-1566EPSS 28% Microsoft Internet Information Services (IIS) 5.0 does not log requests that use the TRACK method, which allows remote attackers to obtain sensitive … Internet Information Services No fix yet Fix from $1,6002009-01-15 HIGH 9.3 CVE-2008-4264EPSS 26% Microsoft Office Excel 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Excel Viewer 2003 Gold and SP3; Excel Viewer; Office Compatibility Pack f… Office Excel Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4265EPSS 25% Microsoft Office Excel 2000 SP3 allows remote attackers to execute arbitrary code via a crafted Excel spreadsheet that contains a malformed object, w… Office Excel Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4266EPSS 28% Array index vulnerability in Microsoft Office Excel 2000 SP3, 2002 SP3, and 2003 SP3; Excel Viewer 2003 Gold and SP3; Office 2004 and 2008 for Mac; a… Excel Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4837EPSS 37% Stack-based buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compa… Office Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4841EPSS 43% The WordPad Text Converter for Word 97 files in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2 allows remote attackers to execute ar… Wordpad No fix yet Fix from $1,9502008-12-10 HIGH 9.0 CVE-2008-5416EPSS 87% Heap-based buffer overflow in Microsoft SQL Server 2000 SP4, 8.00.2050, 8.00.2039, and earlier; SQL Server 2000 Desktop Engine (MSDE 2000) SP4; SQL S… Sql Server No fix yet Fix from $1,9502008-12-10 HIGH 10.0 CVE-2008-3009EPSS 16% Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1, 9, and 2008 do not properly use the … Windows Media Player Mitigation only Fix from $1,9502008-12-10 HIGH 10.0 CVE-2008-3010EPSS 15% Microsoft Windows Media Player 6.4, Windows Media Format Runtime 7.1 through 11, and Windows Media Services 4.1 and 9 incorrectly associate ISATAP ad… Windows Media Player Mitigation only Fix from $1,9502008-12-10 CRITICAL 9.8 CVE-2008-3465EPSS 14% Heap-based buffer overflow in an API in GDI in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 20… Windows 2000 Mitigation only Fix from $2,3002008-12-10 HIGH 9.3 CVE-2008-2249EPSS 31% Integer overflow in GDI in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote att… Windows 2000 Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4024EPSS 29% Microsoft Office Word 2000 SP3 and 2002 SP3 and Office 2004 for Mac allow remote attackers to execute arbitrary code via a Word document with a craft… Office Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4025EPSS 33% Integer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 Gold and S… Office Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4026EPSS 23% Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Word Viewer 2003 Gold and SP3; Office Compatibility Pack for Word, Excel, … Office Mitigation only Fix from $1,9502008-12-10 HIGH 9.3 CVE-2008-4027EPSS 34% Double free vulnerability in Microsoft Office Word 2000 SP3, 2002 SP3, 2003 SP3, and 2007 Gold and SP1; Outlook 2007 Gold and SP1; Word Viewer 2003 G… Office Mitigation only Fix from $1,9502008-12-10