VYPR

Vendor CVEs

Microsoft

All CVEs

15,666 total · sorted by risk
  • CVE-2002-0723Sep 24, 2002
    risk 0.04cvss epss 0.15

    Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka "Cross Domain Verification in Object Tag."

  • CVE-2002-0976Sep 24, 2002
    risk 0.04cvss epss 0.14

    Internet Explorer 4.0 and later allows remote attackers to read arbitrary files via a web page that accesses a legacy XML Datasource applet (com.ms.xml.dso.XMLDSO.class) and modifies the base URL to point to the local system, which is trusted by the applet.

  • CVE-2002-1444Aug 15, 2002
    risk 0.04cvss epss 0.14

    The Google toolbar 1.1.60, when running on Internet Explorer 5.5 and 6.0, allows remote attackers to cause a denial of service (crash with an exception in oleaut32.dll) via malicious HTML, possibly related to small width and height parameters or an incorrect call to the…

  • CVE-2002-0644Aug 12, 2002
    risk 0.04cvss epss 0.11

    Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows members of the db_owner and db_ddladmin roles to execute arbitrary code.

  • CVE-2002-0642Jul 23, 2002
    risk 0.04cvss epss 0.50

    The registry key containing the SQL Server service account information in Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, has insecure permissions, which allows local users to gain privileges, aka "Incorrect Permission on SQL Server Service…

  • CVE-2002-0187Jul 3, 2002
    risk 0.04cvss epss 0.14

    Cross-site scripting vulnerability in the SQLXML component of Microsoft SQL Server 2000 allows an attacker to execute arbitrary script via the root parameter as part of an XML SQL query, aka "Script Injection via XML Tag."

  • CVE-2002-0189May 29, 2002
    risk 0.04cvss epss 0.14

    Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute scripts in the Local Computer zone via a URL that exploits a local HTML resource file, aka the "Cross-Site Scripting in Local HTML Resource" vulnerability.

  • CVE-2002-0149Apr 22, 2002
    risk 0.04cvss epss 0.63

    Buffer overflow in ASP Server-Side Include Function in IIS 4.0, 5.0 and 5.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via long file names.

  • CVE-2002-0072Apr 22, 2002
    risk 0.04cvss epss 0.57

    The w3svc.dll ISAPI filter in Front Page Server Extensions and ASP.NET for Internet Information Server (IIS) 4.0, 5.0, and 5.1 does not properly handle the error condition when a long URL is provided, which allows remote attackers to cause a denial of service (crash) when the…

  • CVE-2002-0153Apr 22, 2002
    risk 0.04cvss epss 0.18

    Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, aka the "Local Applescript Invocation" vulnerability.

  • CVE-2002-0147Apr 22, 2002
    risk 0.04cvss epss 0.62

    Buffer overflow in the ASP data transfer mechanism in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to cause a denial of service or execute code, aka "Microsoft-discovered variant of Chunked Encoding buffer overrun."

  • CVE-2001-1489Dec 31, 2001
    risk 0.04cvss epss 0.18

    Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images.

  • CVE-2001-0877Dec 20, 2001
    risk 0.04cvss epss 0.44

    Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service via (1) a spoofed SSDP advertisement that causes the client to connect to a service on another machine that generates a large amount of traffic (e.g., chargen), or…

  • CVE-2001-0909Nov 21, 2001
    risk 0.04cvss epss 0.20

    Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote attackers to execute arbitrary code via a long hcp: URL.

  • CVE-2001-0664Oct 30, 2001
    risk 0.04cvss epss 0.18

    Internet Explorer 5.5 and 5.01 allows remote attackers to bypass security restrictions via malformed URLs that contain dotless IP addresses, which causes Internet Explorer to process the page in the Intranet Zone, which may have fewer security restrictions, aka the "Zone…

  • CVE-2001-0506Sep 20, 2001
    risk 0.04cvss epss 0.69

    Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability.

  • CVE-2001-0643Sep 20, 2001
    risk 0.04cvss epss 0.11

    Internet Explorer 5.5 does not display the Class ID (CLSID) when it is at the end of the file name, which could allow attackers to trick the user into executing dangerous programs by making it appear that the document is of a safe file type.

  • CVE-2000-1200Aug 31, 2001
    risk 0.04cvss epss 0.48

    Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users.

  • CVE-2001-0348Jul 21, 2001
    risk 0.04cvss epss 0.17

    Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command that contains a backspace.

  • CVE-2001-0336Jun 27, 2001
    risk 0.04cvss epss 0.16

    The Microsoft MS00-060 patch for IIS 5.0 and earlier introduces an error which allows attackers to cause a denial of service via a malformed request.

  • CVE-2001-0150Jun 2, 2001
    risk 0.04cvss epss 0.18

    Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which…

  • CVE-2001-0152May 3, 2001
    risk 0.04cvss epss 0.09

    The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.

  • CVE-2001-0324May 3, 2001
    risk 0.04cvss epss 0.14

    Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash.

  • CVE-2001-0089Feb 16, 2001
    risk 0.04cvss epss 0.14

    Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.

  • CVE-2001-0028Feb 12, 2001
    risk 0.04cvss epss 0.07

    Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute arbitrary commands via a large number of " (quotation) characters.

  • CVE-2000-1147Jan 9, 2001
    risk 0.04cvss epss 0.08

    Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.

  • CVE-2000-1105Jan 9, 2001
    risk 0.04cvss epss 0.11

    The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled.

  • CVE-2000-1112Jan 9, 2001
    risk 0.04cvss epss 0.14

    Microsoft Windows Media Player 7 executes scripts in custom skin (.WMS) files, which could allow remote attackers to gain privileges via a skin that contains a malicious script, aka the ".WMS Script Execution" vulnerability.

  • CVE-2000-1039Jan 9, 2001
    risk 0.04cvss epss 0.46

    Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the "NAPTHA" class of…

  • CVE-2001-0162Jan 1, 2001
    risk 0.04cvss epss 0.15

    WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.

  • CVE-2000-0929Dec 19, 2000
    risk 0.04cvss epss 0.14

    Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the "OCX Attachment" vulnerability.

  • CVE-2000-1061Dec 11, 2000
    risk 0.04cvss epss 0.10

    Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the…

  • CVE-2000-0851Nov 14, 2000
    risk 0.04cvss epss 0.08

    Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message, aka the "Still Image Service Privilege Escalation" vulnerability.

  • CVE-2000-0580Jun 30, 2000
    risk 0.04cvss epss 0.16

    Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization.

  • CVE-2000-0400May 13, 2000
    risk 0.04cvss epss 0.07

    The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by encoding it within an email message or news post.

  • CVE-2000-0347May 2, 2000
    risk 0.04cvss epss 0.18

    Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name.

  • CVE-2000-0256Apr 19, 2000
    risk 0.04cvss epss 0.12

    Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability.

  • CVE-2000-0260Apr 14, 2000
    risk 0.04cvss epss 0.14

    Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka the "Link View Server-Side Component" vulnerability.

  • CVE-2000-0200Mar 6, 2000
    risk 0.04cvss epss 0.16

    Buffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands via a malformed CIL (clip art library) file, aka the "Clip Art Buffer Overrun" vulnerability.

  • CVE-2000-0156Feb 16, 2000
    risk 0.04cvss epss 0.13

    Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability.

  • CVE-2000-0114Feb 2, 2000
    risk 0.04cvss epss 0.48

    Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in the /_vti_bin/ virtual directory.

  • CVE-2000-0098Jan 26, 2000
    risk 0.04cvss epss 0.49

    Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist.

  • CVE-1999-0981Dec 8, 1999
    risk 0.04cvss epss 0.13

    Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect."

  • CVE-1999-0989Dec 6, 1999
    risk 0.04cvss epss 0.12

    Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol.

  • CVE-1999-0819Dec 1, 1999
    risk 0.04cvss epss 0.15

    NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it.

  • CVE-1999-0793Nov 17, 1999
    risk 0.04cvss epss 0.13

    Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.

  • CVE-1999-1110Nov 14, 1999
    risk 0.04cvss epss 0.10

    Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of files on the client.

  • CVE-2000-0330Nov 12, 1999
    risk 0.04cvss epss 0.15

    The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability.

  • CVE-2000-0329Nov 11, 1999
    risk 0.04cvss epss 0.08

    A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.

  • CVE-1999-0877Oct 1, 1999
    risk 0.04cvss epss 0.18

    Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME.

Page 238 of 314