Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.0 CVE-2005-2225EPSS 16% Microsoft MSN Messenger allows remote attackers to cause a denial of service via a plaintext message containing the ".pif" string, which is interpret… Msn Messenger Service No fix yet Fix from $1,6002005-07-12 MEDIUM 5.0 CVE-2005-2150EPSS 19% Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does not properly prevent NULL sessions from accessing certain alternate named pipes… Windows 2000 Mitigation only Fix from $1,6002005-07-11 MEDIUM 5.0 CVE-2005-2087EPSS 61% Internet Explorer 5.01 SP4 up to 6 on various Windows operating systems, including IE 6.0.2900.2180 on Windows XP, allows remote attackers to cause a… Ie Mitigation only Fix from $1,6002005-07-05 MEDIUM 5.0 CVE-2005-2143 Microsoft Front Page allows attackers to cause a denial of service (crash) via a crafted style tag in a web page. Frontpage No fix yet Fix from $1,6002005-07-05 HIGH 7.5 CVE-2005-1935EPSS 27% Heap-based buffer overflow in the BERDecBitString function in Microsoft ASN.1 library (MSASN1.DLL) allows remote attackers to execute arbitrary code … Windows 2000 No fix yet Fix from $1,9502005-06-13 HIGH 7.4 CVE-2005-1794EPSS 16% Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it to sign a certificate, which … Remote Desktop Connection Mitigation only Fix from $1,9502005-06-01 MEDIUM 5.0 CVE-2005-1907EPSS 19% The ISA Firewall service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (Wsps… Isa Server Mitigation only Fix from $1,6002005-05-31 MEDIUM 6.4 CVE-2005-1664EPSS 19% The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one … Asp.net Mitigation only Fix from $1,6002005-05-18 MEDIUM 5.0 CVE-2005-1649EPSS 22% The IPv6 support in Windows XP SP2, 2003 Server SP1, and Longhorn, with Windows Firewall turned off, allows remote attackers to cause a denial of ser… Windows 2003 Server No fix yet Fix from $1,6002005-05-18 MEDIUM 5.0 CVE-2005-1665EPSS 40% The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote attackers to cause a denial of service (CPU … Asp.net Mitigation only Fix from $1,6002005-05-18 HIGH 7.5 CVE-2005-1574EPSS 5% Windows Media Player 9 and 10, in certain cases, allows content protected by Windows Media Digital Rights Management (WMDRM) to redirect the user to … Windows Media Player Mitigation only Fix from $1,9502005-05-14 HIGH 10.0 CVE-2005-0059EPSS 73% Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to execute arbitrary code via a… Windows 2000 Mitigation only Fix from $1,9502005-05-02 HIGH 7.2 CVE-2005-0060 Buffer overflow in the font processing component of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gai… Windows 2000 Mitigation only Fix from $1,9502005-05-02 HIGH 7.2 CVE-2005-0061 The kernel of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via certain access reques… Windows 2000 Mitigation only Fix from $1,9502005-05-02 MEDIUM 5.1 CVE-2005-0558EPSS 15% Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute arbitrary code via a crafted document. Word Mitigation only Fix from $1,6002005-05-02 MEDIUM 5.0 CVE-2005-0500EPSS 11% Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to spoof the domain name of a URL in a titlebar for a script-initiated popup window, … Ie No fix yet Fix from $1,6002005-05-02 MEDIUM 5.0 CVE-2005-0954EPSS 15% Windows Explorer and Internet Explorer in Windows 2000 SP1 allows remote attackers to cause a denial of service (CPU consumption) via a malformed Win… Internet Explorer Mitigation only Fix from $1,6002005-05-02 MEDIUM 5.0 CVE-2005-1052EPSS 9% Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, wh… Outlook Mitigation only Fix from $1,6002005-05-02 MEDIUM 5.0 CVE-2005-1184EPSS 33% The TCP/IP stack in multiple operating systems allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet with the corre… Windows 2000 Mitigation only Fix from $1,6002005-05-02 MEDIUM 5.8 CVE-2005-0420EPSS 26% Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a link to the … Exchange Server No fix yet Fix from $1,6002005-04-27 MEDIUM 5.0 CVE-2004-0790EPSS 80% Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages,… Windows 2000 Mitigation only Fix from $1,6002005-04-12 MEDIUM 5.0 CVE-2005-0688EPSS 47% Windows Server 2003 and XP SP2, with Windows Firewall turned off, allows remote attackers to cause a denial of service (CPU consumption) via a TCP pa… Windows 2003 Server Mitigation only Fix from $1,6002005-03-05 HIGH 10.0 CVE-2004-0963EPSS 33% Buffer overflow in Microsoft Word 2002 (10.6612.6714) SP3, and possibly other versions, allows remote attackers to cause a denial of service (applica… Word Mitigation only Fix from $1,9502005-02-09 HIGH 10.0 CVE-2004-0568EPSS 35% HyperTerminal application for Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 does not properly validate the length of a value that… Windows 2000 Mitigation only Fix from $1,9502005-01-10 HIGH 10.0 CVE-2004-0571EPSS 31% Microsoft Word for Windows 6.0 Converter does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via… Windows 2000 Mitigation only Fix from $1,9502005-01-10 HIGH 10.0 CVE-2004-0900EPSS 26% The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the length of certain messages, wh… Windows Nt Mitigation only Fix from $1,9502005-01-10 HIGH 10.0 CVE-2004-0901EPSS 32% Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote att… Windows 2000 Mitigation only Fix from $1,9502005-01-10 HIGH 10.0 CVE-2004-1134EPSS 72% Buffer overflow in the Microsoft W3Who ISAPI (w3who.dll) allows remote attackers to cause a denial of service and possibly execute arbitrary code via… W3who.dll Mitigation only Fix from $1,9502005-01-10 HIGH 7.2 CVE-2004-0893 The Local Procedure Call (LPC) interface of the Windows Kernel for Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 does not properl… Windows 2000 Mitigation only Fix from $1,9502005-01-10 HIGH 7.2 CVE-2004-0894 LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly validate connection information, … Windows 2000 Mitigation only Fix from $1,9502005-01-10