Vendor CVEs
Microsoft
All CVEs
15,666 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2002-0723 | 0.04 | — | 0.15 | Sep 24, 2002 | Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka "Cross Domain Verification in Object Tag." | |||
| CVE-2002-0976 | 0.04 | — | 0.14 | Sep 24, 2002 | Internet Explorer 4.0 and later allows remote attackers to read arbitrary files via a web page that accesses a legacy XML Datasource applet (com.ms.xml.dso.XMLDSO.class) and modifies the base URL to point to the local system, which is trusted by the applet. | |||
| CVE-2002-1444 | 0.04 | — | 0.14 | Aug 15, 2002 | The Google toolbar 1.1.60, when running on Internet Explorer 5.5 and 6.0, allows remote attackers to cause a denial of service (crash with an exception in oleaut32.dll) via malicious HTML, possibly related to small width and height parameters or an incorrect call to the… | |||
| CVE-2002-0644 | 0.04 | — | 0.11 | Aug 12, 2002 | Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows members of the db_owner and db_ddladmin roles to execute arbitrary code. | |||
| CVE-2002-0642 | 0.04 | — | 0.50 | Jul 23, 2002 | The registry key containing the SQL Server service account information in Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, has insecure permissions, which allows local users to gain privileges, aka "Incorrect Permission on SQL Server Service… | |||
| CVE-2002-0187 | 0.04 | — | 0.14 | Jul 3, 2002 | Cross-site scripting vulnerability in the SQLXML component of Microsoft SQL Server 2000 allows an attacker to execute arbitrary script via the root parameter as part of an XML SQL query, aka "Script Injection via XML Tag." | |||
| CVE-2002-0189 | 0.04 | — | 0.14 | May 29, 2002 | Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute scripts in the Local Computer zone via a URL that exploits a local HTML resource file, aka the "Cross-Site Scripting in Local HTML Resource" vulnerability. | |||
| CVE-2002-0149 | 0.04 | — | 0.63 | Apr 22, 2002 | Buffer overflow in ASP Server-Side Include Function in IIS 4.0, 5.0 and 5.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via long file names. | |||
| CVE-2002-0072 | 0.04 | — | 0.57 | Apr 22, 2002 | The w3svc.dll ISAPI filter in Front Page Server Extensions and ASP.NET for Internet Information Server (IIS) 4.0, 5.0, and 5.1 does not properly handle the error condition when a long URL is provided, which allows remote attackers to cause a denial of service (crash) when the… | |||
| CVE-2002-0153 | 0.04 | — | 0.18 | Apr 22, 2002 | Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, aka the "Local Applescript Invocation" vulnerability. | |||
| CVE-2002-0147 | 0.04 | — | 0.62 | Apr 22, 2002 | Buffer overflow in the ASP data transfer mechanism in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to cause a denial of service or execute code, aka "Microsoft-discovered variant of Chunked Encoding buffer overrun." | |||
| CVE-2001-1489 | 0.04 | — | 0.18 | Dec 31, 2001 | Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images. | |||
| CVE-2001-0877 | 0.04 | — | 0.44 | Dec 20, 2001 | Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service via (1) a spoofed SSDP advertisement that causes the client to connect to a service on another machine that generates a large amount of traffic (e.g., chargen), or… | |||
| CVE-2001-0909 | 0.04 | — | 0.20 | Nov 21, 2001 | Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote attackers to execute arbitrary code via a long hcp: URL. | |||
| CVE-2001-0664 | 0.04 | — | 0.18 | Oct 30, 2001 | Internet Explorer 5.5 and 5.01 allows remote attackers to bypass security restrictions via malformed URLs that contain dotless IP addresses, which causes Internet Explorer to process the page in the Intranet Zone, which may have fewer security restrictions, aka the "Zone… | |||
| CVE-2001-0506 | 0.04 | — | 0.69 | Sep 20, 2001 | Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability. | |||
| CVE-2001-0643 | 0.04 | — | 0.11 | Sep 20, 2001 | Internet Explorer 5.5 does not display the Class ID (CLSID) when it is at the end of the file name, which could allow attackers to trick the user into executing dangerous programs by making it appear that the document is of a safe file type. | |||
| CVE-2000-1200 | 0.04 | — | 0.48 | Aug 31, 2001 | Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users. | |||
| CVE-2001-0348 | 0.04 | — | 0.17 | Jul 21, 2001 | Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command that contains a backspace. | |||
| CVE-2001-0336 | 0.04 | — | 0.16 | Jun 27, 2001 | The Microsoft MS00-060 patch for IIS 5.0 and earlier introduces an error which allows attackers to cause a denial of service via a malformed request. | |||
| CVE-2001-0150 | 0.04 | — | 0.18 | Jun 2, 2001 | Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which… | |||
| CVE-2001-0152 | 0.04 | — | 0.09 | May 3, 2001 | The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders. | |||
| CVE-2001-0324 | 0.04 | — | 0.14 | May 3, 2001 | Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash. | |||
| CVE-2001-0089 | 0.04 | — | 0.14 | Feb 16, 2001 | Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability. | |||
| CVE-2001-0028 | 0.04 | — | 0.07 | Feb 12, 2001 | Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute arbitrary commands via a large number of " (quotation) characters. | |||
| CVE-2000-1147 | 0.04 | — | 0.08 | Jan 9, 2001 | Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag. | |||
| CVE-2000-1105 | 0.04 | — | 0.11 | Jan 9, 2001 | The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled. | |||
| CVE-2000-1112 | 0.04 | — | 0.14 | Jan 9, 2001 | Microsoft Windows Media Player 7 executes scripts in custom skin (.WMS) files, which could allow remote attackers to gain privileges via a skin that contains a malicious script, aka the ".WMS Script Execution" vulnerability. | |||
| CVE-2000-1039 | 0.04 | — | 0.46 | Jan 9, 2001 | Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the "NAPTHA" class of… | |||
| CVE-2001-0162 | 0.04 | — | 0.15 | Jan 1, 2001 | WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections. | |||
| CVE-2000-0929 | 0.04 | — | 0.14 | Dec 19, 2000 | Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the "OCX Attachment" vulnerability. | |||
| CVE-2000-1061 | 0.04 | — | 0.10 | Dec 11, 2000 | Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the… | |||
| CVE-2000-0851 | 0.04 | — | 0.08 | Nov 14, 2000 | Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message, aka the "Still Image Service Privilege Escalation" vulnerability. | |||
| CVE-2000-0580 | 0.04 | — | 0.16 | Jun 30, 2000 | Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization. | |||
| CVE-2000-0400 | 0.04 | — | 0.07 | May 13, 2000 | The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by encoding it within an email message or news post. | |||
| CVE-2000-0347 | 0.04 | — | 0.18 | May 2, 2000 | Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name. | |||
| CVE-2000-0256 | 0.04 | — | 0.12 | Apr 19, 2000 | Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability. | |||
| CVE-2000-0260 | 0.04 | — | 0.14 | Apr 14, 2000 | Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka the "Link View Server-Side Component" vulnerability. | |||
| CVE-2000-0200 | 0.04 | — | 0.16 | Mar 6, 2000 | Buffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands via a malformed CIL (clip art library) file, aka the "Clip Art Buffer Overrun" vulnerability. | |||
| CVE-2000-0156 | 0.04 | — | 0.13 | Feb 16, 2000 | Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability. | |||
| CVE-2000-0114 | 0.04 | — | 0.48 | Feb 2, 2000 | Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in the /_vti_bin/ virtual directory. | |||
| CVE-2000-0098 | 0.04 | — | 0.49 | Jan 26, 2000 | Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist. | |||
| CVE-1999-0981 | 0.04 | — | 0.13 | Dec 8, 1999 | Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect." | |||
| CVE-1999-0989 | 0.04 | — | 0.12 | Dec 6, 1999 | Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol. | |||
| CVE-1999-0819 | 0.04 | — | 0.15 | Dec 1, 1999 | NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it. | |||
| CVE-1999-0793 | 0.04 | — | 0.13 | Nov 17, 1999 | Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet. | |||
| CVE-1999-1110 | 0.04 | — | 0.10 | Nov 14, 1999 | Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of files on the client. | |||
| CVE-2000-0330 | 0.04 | — | 0.15 | Nov 12, 1999 | The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability. | |||
| CVE-2000-0329 | 0.04 | — | 0.08 | Nov 11, 1999 | A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability. | |||
| CVE-1999-0877 | 0.04 | — | 0.18 | Oct 1, 1999 | Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME. |
- CVE-2002-0723Sep 24, 2002risk 0.04cvss —epss 0.15
Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka "Cross Domain Verification in Object Tag."
- CVE-2002-0976Sep 24, 2002risk 0.04cvss —epss 0.14
Internet Explorer 4.0 and later allows remote attackers to read arbitrary files via a web page that accesses a legacy XML Datasource applet (com.ms.xml.dso.XMLDSO.class) and modifies the base URL to point to the local system, which is trusted by the applet.
- CVE-2002-1444Aug 15, 2002risk 0.04cvss —epss 0.14
The Google toolbar 1.1.60, when running on Internet Explorer 5.5 and 6.0, allows remote attackers to cause a denial of service (crash with an exception in oleaut32.dll) via malicious HTML, possibly related to small width and height parameters or an incorrect call to the…
- CVE-2002-0644Aug 12, 2002risk 0.04cvss —epss 0.11
Buffer overflow in several Database Consistency Checkers (DBCCs) for Microsoft SQL Server 2000 and Microsoft Desktop Engine (MSDE) 2000 allows members of the db_owner and db_ddladmin roles to execute arbitrary code.
- CVE-2002-0642Jul 23, 2002risk 0.04cvss —epss 0.50
The registry key containing the SQL Server service account information in Microsoft SQL Server 2000, including Microsoft SQL Server Desktop Engine (MSDE) 2000, has insecure permissions, which allows local users to gain privileges, aka "Incorrect Permission on SQL Server Service…
- CVE-2002-0187Jul 3, 2002risk 0.04cvss —epss 0.14
Cross-site scripting vulnerability in the SQLXML component of Microsoft SQL Server 2000 allows an attacker to execute arbitrary script via the root parameter as part of an XML SQL query, aka "Script Injection via XML Tag."
- CVE-2002-0189May 29, 2002risk 0.04cvss —epss 0.14
Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute scripts in the Local Computer zone via a URL that exploits a local HTML resource file, aka the "Cross-Site Scripting in Local HTML Resource" vulnerability.
- CVE-2002-0149Apr 22, 2002risk 0.04cvss —epss 0.63
Buffer overflow in ASP Server-Side Include Function in IIS 4.0, 5.0 and 5.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via long file names.
- CVE-2002-0072Apr 22, 2002risk 0.04cvss —epss 0.57
The w3svc.dll ISAPI filter in Front Page Server Extensions and ASP.NET for Internet Information Server (IIS) 4.0, 5.0, and 5.1 does not properly handle the error condition when a long URL is provided, which allows remote attackers to cause a denial of service (crash) when the…
- CVE-2002-0153Apr 22, 2002risk 0.04cvss —epss 0.18
Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, aka the "Local Applescript Invocation" vulnerability.
- CVE-2002-0147Apr 22, 2002risk 0.04cvss —epss 0.62
Buffer overflow in the ASP data transfer mechanism in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to cause a denial of service or execute code, aka "Microsoft-discovered variant of Chunked Encoding buffer overrun."
- CVE-2001-1489Dec 31, 2001risk 0.04cvss —epss 0.18
Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (CPU consumption and memory leak) via a web page with a large number of images.
- CVE-2001-0877Dec 20, 2001risk 0.04cvss —epss 0.44
Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service via (1) a spoofed SSDP advertisement that causes the client to connect to a service on another machine that generates a large amount of traffic (e.g., chargen), or…
- CVE-2001-0909Nov 21, 2001risk 0.04cvss —epss 0.20
Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote attackers to execute arbitrary code via a long hcp: URL.
- CVE-2001-0664Oct 30, 2001risk 0.04cvss —epss 0.18
Internet Explorer 5.5 and 5.01 allows remote attackers to bypass security restrictions via malformed URLs that contain dotless IP addresses, which causes Internet Explorer to process the page in the Intranet Zone, which may have fewer security restrictions, aka the "Zone…
- CVE-2001-0506Sep 20, 2001risk 0.04cvss —epss 0.69
Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability.
- CVE-2001-0643Sep 20, 2001risk 0.04cvss —epss 0.11
Internet Explorer 5.5 does not display the Class ID (CLSID) when it is at the end of the file name, which could allow attackers to trick the user into executing dangerous programs by making it appear that the document is of a safe file type.
- CVE-2000-1200Aug 31, 2001risk 0.04cvss —epss 0.48
Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users.
- CVE-2001-0348Jul 21, 2001risk 0.04cvss —epss 0.17
Microsoft Windows 2000 telnet service allows attackers to cause a denial of service (crash) via a long logon command that contains a backspace.
- CVE-2001-0336Jun 27, 2001risk 0.04cvss —epss 0.16
The Microsoft MS00-060 patch for IIS 5.0 and earlier introduces an error which allows attackers to cause a denial of service via a malformed request.
- CVE-2001-0150Jun 2, 2001risk 0.04cvss —epss 0.18
Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which…
- CVE-2001-0152May 3, 2001risk 0.04cvss —epss 0.09
The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.
- CVE-2001-0324May 3, 2001risk 0.04cvss —epss 0.14
Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash.
- CVE-2001-0089Feb 16, 2001risk 0.04cvss —epss 0.14
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.
- CVE-2001-0028Feb 12, 2001risk 0.04cvss —epss 0.07
Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute arbitrary commands via a large number of " (quotation) characters.
- CVE-2000-1147Jan 9, 2001risk 0.04cvss —epss 0.08
Buffer overflow in IIS ISAPI .ASP parsing mechanism allows attackers to execute arbitrary commands via a long string to the "LANGUAGE" argument in a script tag.
- CVE-2000-1105Jan 9, 2001risk 0.04cvss —epss 0.11
The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled.
- CVE-2000-1112Jan 9, 2001risk 0.04cvss —epss 0.14
Microsoft Windows Media Player 7 executes scripts in custom skin (.WMS) files, which could allow remote attackers to gain privileges via a skin that contains a malicious script, aka the ".WMS Script Execution" vulnerability.
- CVE-2000-1039Jan 9, 2001risk 0.04cvss —epss 0.46
Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the "NAPTHA" class of…
- CVE-2001-0162Jan 1, 2001risk 0.04cvss —epss 0.15
WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP connections.
- CVE-2000-0929Dec 19, 2000risk 0.04cvss —epss 0.14
Microsoft Windows Media Player 7 allows attackers to cause a denial of service in RTF-enabled email clients via an embedded OCX control that is not closed properly, aka the "OCX Attachment" vulnerability.
- CVE-2000-1061Dec 11, 2000risk 0.04cvss —epss 0.10
Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the…
- CVE-2000-0851Nov 14, 2000risk 0.04cvss —epss 0.08
Buffer overflow in the Still Image Service in Windows 2000 allows local users to gain additional privileges via a long WM_USER message, aka the "Still Image Service Privilege Escalation" vulnerability.
- CVE-2000-0580Jun 30, 2000risk 0.04cvss —epss 0.16
Windows 2000 Server allows remote attackers to cause a denial of service by sending a continuous stream of binary zeros to various TCP and UDP ports, which significantly increases the CPU utilization.
- CVE-2000-0400May 13, 2000risk 0.04cvss —epss 0.07
The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by encoding it within an email message or news post.
- CVE-2000-0347May 2, 2000risk 0.04cvss —epss 0.18
Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name.
- CVE-2000-0256Apr 19, 2000risk 0.04cvss —epss 0.12
Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability.
- CVE-2000-0260Apr 14, 2000risk 0.04cvss —epss 0.14
Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka the "Link View Server-Side Component" vulnerability.
- CVE-2000-0200Mar 6, 2000risk 0.04cvss —epss 0.16
Buffer overflow in Microsoft Clip Art Gallery allows remote attackers to cause a denial of service or execute commands via a malformed CIL (clip art library) file, aka the "Clip Art Buffer Overrun" vulnerability.
- CVE-2000-0156Feb 16, 2000risk 0.04cvss —epss 0.13
Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability.
- CVE-2000-0114Feb 2, 2000risk 0.04cvss —epss 0.48
Frontpage Server Extensions allows remote attackers to determine the name of the anonymous account via an RPC POST request to shtml.dll in the /_vti_bin/ virtual directory.
- CVE-2000-0098Jan 26, 2000risk 0.04cvss —epss 0.49
Microsoft Index Server allows remote attackers to determine the real path for a web directory via a request to an Internet Data Query file that does not exist.
- CVE-1999-0981Dec 8, 1999risk 0.04cvss —epss 0.13
Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect."
- CVE-1999-0989Dec 6, 1999risk 0.04cvss —epss 0.12
Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol.
- CVE-1999-0819Dec 1, 1999risk 0.04cvss —epss 0.15
NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it.
- CVE-1999-0793Nov 17, 1999risk 0.04cvss —epss 0.13
Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.
- CVE-1999-1110Nov 14, 1999risk 0.04cvss —epss 0.10
Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of files on the client.
- CVE-2000-0330Nov 12, 1999risk 0.04cvss —epss 0.15
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability.
- CVE-2000-0329Nov 11, 1999risk 0.04cvss —epss 0.08
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.
- CVE-1999-0877Oct 1, 1999risk 0.04cvss —epss 0.18
Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME.
Page 238 of 314