Vulnerability index

Browse CVEs

3,025 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.6 CVE-2000-0330EPSS 15% The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access UR… Windows 95 Mitigation only Fix from $1,9501999-11-12 MEDIUM 5.1 CVE-2000-0329EPSS 8% A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, ak… Ie Mitigation only Fix from $1,6001999-11-11 HIGH 7.2 CVE-1999-0898EPSS 7% Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler reque… Windows Nt Mitigation only Fix from $1,9501999-11-04 HIGH 7.2 CVE-1999-0899 The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an… Windows Nt Mitigation only Fix from $1,9501999-11-04 HIGH 7.5 CVE-1999-0354EPSS 5% Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which do… Internet Explorer Mitigation only Fix from $1,9501999-11-01 MEDIUM 5.0 CVE-1999-1234EPSS 13% LSA (LSASS.EXE) in Windows NT 4.0 allows remote attackers to cause a denial of service via a NULL policy handle in a call to (1) SamrOpenDomain, (2) … Windows Nt Mitigation only Fix from $1,6001999-10-26 HIGH 9.3 CVE-1999-0766EPSS 7% The Microsoft Java Virtual Machine allows a malicious Java applet to execute arbitrary commands outside of the sandbox environment. Java Virtual Machine Mitigation only Fix from $1,9501999-10-21 HIGH 7.6 CVE-2000-0327EPSS 12% Microsoft Virtual Machine (VM) allows remote attackers to escape the Java sandbox and execute commands via an applet containing an illegal cast opera… Virtual Machine Mitigation only Fix from $1,9501999-10-21 HIGH 7.5 CVE-1999-0777EPSS 12% IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions. Commercial Internet System Mitigation only Fix from $1,9501999-09-23 HIGH 7.5 CVE-1999-0909EPSS 12% Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed … Terminal Server Mitigation only Fix from $1,9501999-09-20 HIGH 9.0 CVE-1999-0886EPSS 22% The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager. Windows Nt No fix yet Fix from $1,9501999-09-17 MEDIUM 5.1 CVE-1999-0750EPSS 9% Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the user's Hotmail account. Hotmail No fix yet Fix from $1,6001999-09-13 MEDIUM 5.0 CVE-1999-0910EPSS 6% Microsoft Site Server and Commercial Internet System (MCIS) do not set an expiration for a cookie, which could then be cached by a proxy and inadvert… Commercial Internet System Mitigation only Fix from $1,6001999-09-10 MEDIUM 5.0 CVE-1999-1016EPSS 8% Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allow… Frontpage No fix yet Fix from $1,6001999-08-27 MEDIUM 5.0 CVE-1999-1052EPSS 14% Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document r… Frontpage Mitigation only Fix from $1,6001999-08-24 MEDIUM 5.0 CVE-2000-0328EPSS 25% Windows NT 4.0 generates predictable random TCP initial sequence numbers (ISN), which allows remote attackers to perform spoofing and session hijacki… Windows Nt Mitigation only Fix from $1,6001999-08-24 HIGH 7.2 CVE-2000-0325 The Microsoft Jet database engine allows an attacker to execute commands via a database query, aka the "VBA Shell" vulnerability. Jet Mitigation only Fix from $1,9501999-08-20 HIGH 7.1 CVE-1999-0725EPSS 25% When IIS is run with a default language of Chinese, Korean, or Japanese, it allows a remote attacker to view the source code of certain files, a.k.a.… Internet Information Server Mitigation only Fix from $1,9501999-08-19 HIGH 7.5 CVE-1999-0875EPSS 10% DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes. Windows 2000 Mitigation only Fix from $1,9501999-08-11 MEDIUM 5.0 CVE-1999-0867EPSS 22% Denial of service in IIS 4.0 via a flood of HTTP requests with malformed headers. Commercial Internet System Mitigation only Fix from $1,6001999-08-11 MEDIUM 6.2 CVE-1999-0700 Buffer overflow in Microsoft Phone Dialer (dialer.exe), via a malformed dialer entry in the dialer.ini file. Windows 2000 Mitigation only Fix from $1,6001999-07-29 HIGH 7.6 CVE-2000-0323EPSS 6% The Microsoft Jet database engine allows an attacker to modify text files via a database query, aka the "Text I-ISAM" vulnerability. Jet Mitigation only Fix from $1,9501999-07-28 MEDIUM 5.0 CVE-1999-0224EPSS 17% Denial of service in Windows NT messenger service through a long username. Windows Nt Mitigation only Fix from $1,6001999-07-23 HIGH 7.8 CVE-1999-0721EPSS 9% Denial of service in Windows NT Local Security Authority (LSA) through a malformed LSA request. Windows 2000 Mitigation only Fix from $1,9501999-07-20 HIGH 10.0 CVE-1999-1011EPSS 77% The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allow… Data Access Components Mitigation only Fix from $1,9501999-07-19 HIGH 7.8 CVE-1999-0728EPSS 6% A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them. Windows Nt Mitigation only Fix from $1,9501999-07-06 MEDIUM 5.0 CVE-1999-1478EPSS 18% The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpot via a URL that includes the… Internet Information Server Mitigation only Fix from $1,6001999-07-06 HIGH 7.8 CVE-1999-0918EPSS 26% Denial of service in various Windows systems via malformed, fragmented IGMP packets. Windows 2000 Mitigation only Fix from $1,9501999-07-03 HIGH 7.8 CVE-1999-0726EPSS 8% An attacker can conduct a denial of service in Windows NT by executing a program with a malformed file image header. Windows 2000 Mitigation only Fix from $1,9501999-06-30 MEDIUM 5.0 CVE-1999-0140EPSS 14% Denial of service in RAS/PPTP on NT systems. Windows Nt No fix yet Fix from $1,6001999-06-30