Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2007-2380EPSS 12% The Microsoft Atlas framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote att… Atlas Framework Mitigation only Fix from $1,6002007-04-30 MEDIUM 6.8 CVE-2007-2108EPSS 22% Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.0.1.5, 9.2.0.8, 10.1.0.5, and 10.2.0.2 on Windows allows remote attackers … Windows Mitigation only Fix from $1,6002007-04-18 HIGH 10.0 CVE-2007-1748EPSS 78% Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 2000 Server SP 4, Server 2003 SP… Windows 2000 Mitigation only Fix from $1,9502007-04-13 MEDIUM 6.9 CVE-2007-1973 Race condition in the Virtual DOS Machine (VDM) in the Windows Kernel in Microsoft Windows NT 4.0 allows local users to modify memory and gain privil… Windows Nt Mitigation only Fix from $1,6002007-04-11 HIGH 7.1 CVE-2007-1911EPSS 12% Multiple unspecified vulnerabilities in Microsoft Word 2007 allow remote attackers to cause a denial of service (CPU consumption) via crafted documen… Word No fix yet Fix from $1,9502007-04-10 MEDIUM 6.8 CVE-2007-1910EPSS 25% Buffer overflow in wwlib.dll in Microsoft Word 2007 allows remote attackers to cause a denial of service (application crash) and possibly execute arb… Word No fix yet Fix from $1,6002007-04-10 MEDIUM 6.8 CVE-2007-1912EPSS 11% Heap-based buffer overflow in Microsoft Windows allows user-assisted remote attackers to have an unknown impact via a crafted .HLP file. Windows 2000 No fix yet Fix from $1,6002007-04-10 HIGH 10.0 CVE-2007-0938EPSS 46% Microsoft Content Management Server (MCMS) 2001 SP1 and 2002 SP2 does not properly handle certain characters in a crafted HTTP GET request, which all… Content Management Server Mitigation only Fix from $1,9502007-04-10 HIGH 9.3 CVE-2007-1205EPSS 31% Unspecified vulnerability in Microsoft Agent (msagent\agentsvr.exe) in Windows 2000 SP4, XP SP2, and Server 2003, 2003 SP1, and 2003 SP2 allows remot… Windows 2000 Mitigation only Fix from $1,9502007-04-10 HIGH 7.2 CVE-2007-1206 The Virtual DOS Machine (VDM) in the Windows Kernel in Microsoft Windows NT 4.0; 2000 SP4; XP SP2; Server 2003, 2003 SP1, and 2003 SP2; and Windows V… Windows 2000 Mitigation only Fix from $1,9502007-04-10 HIGH 7.2 CVE-2007-1215 Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local … Windows 2000 Mitigation only Fix from $1,9502007-04-04 HIGH 7.1 CVE-2007-1211EPSS 29% Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to c… Windows 2000 Mitigation only Fix from $1,9502007-04-04 MEDIUM 6.6 CVE-2007-1212 Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local … Windows 2000 Mitigation only Fix from $1,6002007-04-04 HIGH 9.3 CVE-2007-0038EPSS 73% Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code… Windows 2000 Mitigation only Fix from $1,9502007-03-30 HIGH 7.5 CVE-2007-1692EPSS 15% The default configuration of Microsoft Windows uses the Web Proxy Autodiscovery Protocol (WPAD) without static WPAD entries, which might allow remote… Windows 2000 Mitigation only Fix from $1,9502007-03-26 HIGH 10.0 CVE-2007-1644EPSS 33% The dynamic DNS update mechanism in the DNS Server service on Microsoft Windows does not properly authenticate clients in certain deployments or conf… All Windows No fix yet Fix from $1,9502007-03-24 HIGH 10.0 CVE-2007-1512EPSS 11% Stack-based buffer overflow in the AfxOleSetEditMenu function in the MFC component in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 Gold and SP… Visual Studio .net Mitigation only Fix from $1,9502007-03-20 HIGH 7.1 CVE-2007-1347EPSS 30% Microsoft Windows Explorer on Windows 2000 SP4 FR and XP SP2 FR, and possibly other versions and platforms, allows remote attackers to cause a denial… Windows Explorer No fix yet Fix from $1,9502007-03-08 HIGH 7.2 CVE-2007-1221 The Hypervisor in Microsoft Xbox 360 kernel 4532 and 4548 allows attackers with physical access to force execution of the hypervisor syscall with a c… Xbox 360 Mitigation only Fix from $1,9502007-03-02 MEDIUM 6.2 CVE-2007-1220 The Hypervisor in Microsoft Xbox 360 kernel 4532 and 4548 does not properly verify the parameters passed to the syscall dispatcher, which allows atta… Xbox 360 Mitigation only Fix from $1,6002007-03-02 MEDIUM 5.0 CVE-2006-7065EPSS 20% Microsoft Internet Explorer allows remote attackers to cause a denial of service (crash) via an IFRAME with a certain XML file and XSL stylesheet tha… Ie No fix yet Fix from $1,6002007-03-02 HIGH 10.0 CVE-2007-1117EPSS 18% Unspecified vulnerability in Publisher 2007 in Microsoft Office 2007 allows remote attackers to execute arbitrary code via unspecified vectors, relat… Publisher No fix yet Fix from $1,9502007-02-27 HIGH 7.1 CVE-2007-1090EPSS 16% Microsoft Windows Explorer on Windows XP and 2003 allows remote user-assisted attackers to cause a denial of service (crash) via a malformed WMF file… Windows Explorer Mitigation only Fix from $1,9502007-02-26 HIGH 10.0 CVE-2006-7027EPSS 15% Microsoft Internet Security and Acceleration (ISA) Server 2004 logs unusual ASCII characters in the Host header, including the tab, which allows remo… Isa Server Mitigation only Fix from $1,9502007-02-23 MEDIUM 5.0 CVE-2006-7030EPSS 16% Microsoft Internet Explorer 6 SP2 and earlier allows remote attackers to cause a denial of service (crash) via certain malformed HTML, possibly invol… Ie Mitigation only Fix from $1,6002007-02-23 HIGH 9.3 CVE-2007-0913EPSS 12% Unspecified vulnerability in Microsoft Powerpoint allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as expl… Powerpoint No fix yet Fix from $1,9502007-02-14 HIGH 10.0 CVE-2007-0219EPSS 39% Microsoft Internet Explorer 5.01, 6, and 7 uses certain COM objects from (1) Msb1fren.dll, (2) Htmlmm.ocx, and (3) Blnmgrps.dll as ActiveX controls, … Internet Explorer Mitigation only Fix from $1,9502007-02-13 HIGH 10.0 CVE-2007-0217EPSS 58% The wininet.dll FTP client code in Microsoft Internet Explorer 5.01 and 6 might allow remote attackers to execute arbitrary code via an FTP server re… Internet Explorer Mitigation only Fix from $1,9502007-02-13 HIGH 9.3 CVE-2006-4697EPSS 31% Microsoft Internet Explorer 5.01, 6, and 7 uses certain COM objects from Imjpcksid.dll as ActiveX controls, which allows remote attackers to execute … Internet Explorer Mitigation only Fix from $1,9502007-02-13 HIGH 9.3 CVE-2007-0208EPSS 30% Microsoft Word in Office 2000 SP3, XP SP3, Office 2003 SP2, Works Suite 2004 to 2006, and Office 2004 for Mac does not correctly check the properties… Office Mitigation only Fix from $1,9502007-02-13