Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.0
CVE-2005-2225EPSS 16%
Microsoft MSN Messenger allows remote attackers to cause a denial of service via a plaintext message containing the ".pif" string, which is interpret…
Msn Messenger Service
No fix yet
MEDIUM 5.0
CVE-2005-2150EPSS 19%
Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does not properly prevent NULL sessions from accessing certain alternate named pipes…
Windows 2000
Mitigation only
MEDIUM 5.0
CVE-2005-2087EPSS 61%
Internet Explorer 5.01 SP4 up to 6 on various Windows operating systems, including IE 6.0.2900.2180 on Windows XP, allows remote attackers to cause a…
Ie
Mitigation only
MEDIUM 5.0
CVE-2005-2143
Microsoft Front Page allows attackers to cause a denial of service (crash) via a crafted style tag in a web page.
Frontpage
No fix yet
HIGH 7.5
CVE-2005-1935EPSS 27%
Heap-based buffer overflow in the BERDecBitString function in Microsoft ASN.1 library (MSASN1.DLL) allows remote attackers to execute arbitrary code …
Windows 2000
No fix yet
HIGH 7.4
CVE-2005-1794EPSS 16%
Microsoft Terminal Server using Remote Desktop Protocol (RDP) 5.2 stores an RSA private key in mstlsapi.dll and uses it to sign a certificate, which …
Remote Desktop Connection
Mitigation only
MEDIUM 5.0
CVE-2005-1907EPSS 19%
The ISA Firewall service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (Wsps…
Isa Server
Mitigation only
MEDIUM 6.4
CVE-2005-1664EPSS 19%
The __VIEWSTATE functionality in Microsoft ASP.NET 1.x allows remote attackers to conduct replay attacks to (1) apply a ViewState generated from one …
Asp.net
Mitigation only
MEDIUM 5.0
CVE-2005-1649EPSS 22%
The IPv6 support in Windows XP SP2, 2003 Server SP1, and Longhorn, with Windows Firewall turned off, allows remote attackers to cause a denial of ser…
Windows 2003 Server
No fix yet
MEDIUM 5.0
CVE-2005-1665EPSS 40%
The __VIEWSTATE functionality in Microsoft ASP.NET 1.x, when not cryptographically signed, allows remote attackers to cause a denial of service (CPU …
Asp.net
Mitigation only
HIGH 7.5
CVE-2005-1574EPSS 5%
Windows Media Player 9 and 10, in certain cases, allows content protected by Windows Media Digital Rights Management (WMDRM) to redirect the user to …
Windows Media Player
Mitigation only
HIGH 10.0
CVE-2005-0059EPSS 73%
Buffer overflow in the Message Queuing component of Microsoft Windows 2000 and Windows XP SP1 allows remote attackers to execute arbitrary code via a…
Windows 2000
Mitigation only
HIGH 7.2
CVE-2005-0060
Buffer overflow in the font processing component of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gai…
Windows 2000
Mitigation only
HIGH 7.2
CVE-2005-0061
The kernel of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via certain access reques…
Windows 2000
Mitigation only
MEDIUM 5.1
CVE-2005-0558EPSS 15%
Buffer overflow in Microsoft Word 2000, Word 2002, and Word 2003 allows remote attackers to execute arbitrary code via a crafted document.
Word
Mitigation only
MEDIUM 5.0
CVE-2005-0500EPSS 11%
Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to spoof the domain name of a URL in a titlebar for a script-initiated popup window, …
Ie
No fix yet
MEDIUM 5.0
CVE-2005-0954EPSS 15%
Windows Explorer and Internet Explorer in Windows 2000 SP1 allows remote attackers to cause a denial of service (CPU consumption) via a malformed Win…
Internet Explorer
Mitigation only
MEDIUM 5.0
CVE-2005-1052EPSS 9%
Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not properly display comma separated addresses in the From field in an e-mail message, wh…
Outlook
Mitigation only
MEDIUM 5.0
CVE-2005-1184EPSS 33%
The TCP/IP stack in multiple operating systems allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet with the corre…
Windows 2000
Mitigation only
MEDIUM 5.8
CVE-2005-0420EPSS 26%
Microsoft Outlook Web Access (OWA), when used with Exchange, allows remote attackers to redirect users to arbitrary URLs for login via a link to the …
Exchange Server
No fix yet
MEDIUM 5.0
CVE-2004-0790EPSS 80%
Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages,…
Windows 2000
Mitigation only
MEDIUM 5.0
CVE-2005-0688EPSS 47%
Windows Server 2003 and XP SP2, with Windows Firewall turned off, allows remote attackers to cause a denial of service (CPU consumption) via a TCP pa…
Windows 2003 Server
Mitigation only
HIGH 10.0
CVE-2004-0963EPSS 33%
Buffer overflow in Microsoft Word 2002 (10.6612.6714) SP3, and possibly other versions, allows remote attackers to cause a denial of service (applica…
Word
Mitigation only
HIGH 10.0
CVE-2004-0568EPSS 35%
HyperTerminal application for Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 does not properly validate the length of a value that…
Windows 2000
Mitigation only
HIGH 10.0
CVE-2004-0571EPSS 31%
Microsoft Word for Windows 6.0 Converter does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via…
Windows 2000
Mitigation only
HIGH 10.0
CVE-2004-0900EPSS 26%
The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the length of certain messages, wh…
Windows Nt
Mitigation only
HIGH 10.0
CVE-2004-0901EPSS 32%
Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote att…
Windows 2000
Mitigation only
HIGH 10.0
CVE-2004-1134EPSS 72%
Buffer overflow in the Microsoft W3Who ISAPI (w3who.dll) allows remote attackers to cause a denial of service and possibly execute arbitrary code via…
W3who.dll
Mitigation only
HIGH 7.2
CVE-2004-0893
The Local Procedure Call (LPC) interface of the Windows Kernel for Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 does not properl…
Windows 2000
Mitigation only
HIGH 7.2
CVE-2004-0894
LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly validate connection information, …
Windows 2000
Mitigation only