Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.4 CVE-2004-0723EPSS 13% Microsoft Java virtual machine (VM) 5.0.0.3810 allows remote attackers to bypass sandbox restrictions to read or write certain data between applets f… Java Virtual Machine No fix yet Fix from $1,6002004-07-27 MEDIUM 5.0 CVE-2004-0728EPSS 25% The Remote Control Client service in Microsoft's Systems Management Server (SMS) 2.50.2726.0 allows remote attackers to cause a denial of service (cr… Systems Management Server Mitigation only Fix from $1,6002004-07-27 HIGH 10.0 CVE-2004-0420EPSS 46% The Windows Shell application in Windows 98, Windows ME, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to… Ie No fix yet Fix from $1,9502004-07-07 MEDIUM 5.1 CVE-2004-0475EPSS 10% The showHelp function in Internet Explorer 6 on Windows XP Pro allows remote attackers to execute arbitrary local .CHM files via a double backward sl… Ie No fix yet Fix from $1,6002004-07-07 MEDIUM 5.0 CVE-2004-0479EPSS 26% Internet Explorer 6 allows remote attackers to cause a denial of service (crash) via Javascript that creates a new popup window and disables the imag… Ie Mitigation only Fix from $1,6002004-07-07 HIGH 7.5 CVE-2003-1041EPSS 53% Internet Explorer 5.x and 6.0 allows remote attackers to execute arbitrary programs via a modified directory traversal attack using a URL containing … Ie No fix yet Fix from $1,9502004-06-14 HIGH 7.5 CVE-2004-0197EPSS 26% Buffer overflow in Microsoft Jet Database Engine 4.0 allows remote attackers to execute arbitrary code via a specially-crafted database query. Jet Mitigation only Fix from $1,9502004-06-01 MEDIUM 6.8 CVE-2004-0379EPSS 8% Multiple cross-site scripting (XSS) vulnerabilities in Microsoft SharePoint Portal Server 2001 allow remote attackers to process arbitrary web conten… Sharepoint Portal Server Mitigation only Fix from $1,6002004-05-04 HIGH 7.5 CVE-2003-0513EPSS 10% Microsoft Internet Explorer allows remote attackers to bypass intended cookie access restrictions on a web application via "%2e%2e" (encoded dot dot)… Ie No fix yet Fix from $1,9502004-04-15 HIGH 7.5 CVE-2003-0818EPSS 82% Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries … Windows 2000 Mitigation only Fix from $1,9502004-03-03 HIGH 10.0 CVE-2003-0903EPSS 37% Buffer overflow in a component of Microsoft Data Access Components (MDAC) 2.5 through 2.8 allows remote attackers to execute arbitrary code via a mal… Data Access Components Mitigation only Fix from $1,9502004-02-17 MEDIUM 5.0 CVE-2004-2091 Microsoft Baseline Security Analyzer (MBSA) 1.2 does not correctly identify systems that have been patched but remain vulnerable to exploit until the… Baseline Security Analyzer Mitigation only Fix from $1,6002004-02-10 MEDIUM 5.0 CVE-2004-2090EPSS 16% Microsoft Internet Explorer 5.0.1 through 6.0 allows remote attackers to determine the existence of arbitrary files via the VBScript LoadPicture meth… Ie No fix yet Fix from $1,6002004-02-07 HIGH 7.5 CVE-2003-0823EPSS 26% Internet Explorer 6 SP1 and earlier allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by calli… Ie Mitigation only Fix from $1,9502004-02-03 HIGH 10.0 CVE-2003-1027EPSS 38% Internet Explorer 5.01 through 6 SP1 allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by usin… Ie Mitigation only Fix from $1,9502004-01-20 HIGH 9.3 CVE-2003-1026EPSS 39% Internet Explorer 5.01 through 6 SP1 allows remote attackers to bypass zone restrictions via a javascript protocol URL in a sub-frame, which is added… Ie Mitigation only Fix from $1,9502004-01-20 MEDIUM 5.0 CVE-2003-1028EPSS 19% The download function of Internet Explorer 6 SP1 allows remote attackers to obtain the cache directory name via an HTTP response with an invalid Cont… Ie Mitigation only Fix from $1,6002004-01-20 HIGH 8.8 CVE-2003-1378EPSS 16% Microsoft Outlook Express 6.0 and Outlook 2000, with the security zone set to Internet Zone, allows remote attackers to execute arbitrary programs vi… Outlook No fix yet Fix from $1,9502003-12-31 HIGH 7.2 CVE-2003-1407 Buffer overflow in cmd.exe in Windows NT 4.0 may allow local users to execute arbitrary code via a long pathname argument to the cd command. Windows Nt No fix yet Fix from $1,9502003-12-31 MEDIUM 5.1 CVE-2003-1107EPSS 5% The DHTML capability in Microsoft Windows Media Player (WMP) 6.4, 7.0, 7.1, and 9 may run certain URL commands from a security zone that is less trus… Windows Media Player Mitigation only Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2003-1275EPSS 17% Pocket Internet Explorer (PIE) 3.0 allows remote attackers to cause a denial of service (crash) via a Javascript function that uses the object.innerH… Pocket Ie No fix yet Fix from $1,6002003-12-31 MEDIUM 5.0 CVE-2003-1559EPSS 16% Microsoft Internet Explorer 5.22, and other 5 through 6 SP1 versions, sends Referer headers containing https:// URLs in requests for http:// URLs, wh… Ie Mitigation only Fix from $1,6002003-12-31 HIGH 7.5 CVE-2003-0821EPSS 19% Microsoft Excel 97, 2000, and 2002 allows remote attackers to execute arbitrary code via a spreadsheet with a malicious XLM (Excel 4) macro that bypa… Word Mitigation only Fix from $1,9502003-12-15 HIGH 7.5 CVE-2003-0822EPSS 81% Buffer overflow in the debug functionality in fp30reg.dll of Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to ex… Frontpage Server Extensions Mitigation only Fix from $1,9502003-12-15 MEDIUM 5.0 CVE-2003-0824EPSS 35% Unknown vulnerability in the SmartHTML interpreter (shtml.dll) in Microsoft FrontPage Server Extensions 2000 and 2002, and Microsoft SharePoint Team … Frontpage Server Extensions Mitigation only Fix from $1,6002003-12-15 HIGH 7.5 CVE-2003-0838EPSS 38% Internet Explorer allows remote attackers to bypass zone restrictions to inject and execute arbitrary programs by creating a popup window and inserti… Ie Mitigation only Fix from $1,9502003-11-17 MEDIUM 5.0 CVE-2003-0839EPSS 14% Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files … Windows 2003 Server Mitigation only Fix from $1,6002003-11-17 HIGH 7.5 CVE-2003-0664 Microsoft Word 2002, 2000, 97, and 98(J) does not properly check certain properties of a document, which allows attackers to bypass the macro securit… Word Mitigation only Fix from $1,9502003-10-20 HIGH 7.5 CVE-2003-0665EPSS 30% Buffer overflow in the ActiveX control for Microsoft Access Snapshot Viewer for Access 97, 2000, and 2002 allows remote attackers to execute arbitrar… Access Mitigation only Fix from $1,9502003-10-20 HIGH 7.5 CVE-2003-0666EPSS 22% Buffer overflow in Microsoft Wordperfect Converter allows remote attackers to execute arbitrary code via modified data offset and data size parameter… Wordperfect Converter Mitigation only Fix from $1,9502003-10-20