CVEs (515)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.0 HIGH· v2 The Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate per-user subscriptions, which allows remote authenticated users to e...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.0 HIGH· v2 Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Heap-based buffer overflow in the InternalOpenColorProfile function in mscms.dll in Microsoft Windows Image Color Management System (MSCMS) in the Image Color Management (ICM) component on Windows 2000 SP4, XP SP2 and SP...Show more |
1Microsoft 4Windows 2000 Windows Server 2003Windows Server 2008+1 moreApr 23, 2026 Jul 8, 2008 N/A· v4 N/A· v3 9.4 HIGH· v2 Unspecified vulnerability in Microsoft DNS in Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008 allows remote attackers to conduct cache poisoning attacks via unknown vectors related to accepting "records from a...Show more |
1Microsoft 2Windows 2000 Windows 2003 ServerApr 23, 2026 Jun 12, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 The WINS service on Microsoft Windows 2000 SP4, and Server 2003 SP1 and SP2, does not properly validate data structures in WINS network packets, which allows local users to gain privileges via a crafted packet, aka "Memo...Show more |
1Microsoft 4Windows 2000 Windows Server 2003Windows Vista+1 moreApr 23, 2026 Apr 23, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Buffer overflow in the Microsoft HeartbeatCtl ActiveX control in HRTBEAT.OCX allows remote attackers to execute arbitrary code via the Host argument to an unspecified method. |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Stack-based buffer overflow in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EMF image file with crafted filename para...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Server 2008+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 Unspecified vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, through Vista SP1, and Server 2008 allows local users to execute arbitrary code via unknown vectors related to impro...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Server 2008+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EM...Show more |
1Microsoft 4Windows 2000 Windows Server 2003Windows Vista+1 moreApr 23, 2026 Apr 8, 2008 N/A· v4 7.5 HIGH· v3 8.8 HIGH· v2 The DNS client in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, and Vista uses predictable DNS transaction IDs, which allows remote attackers to spoof DNS responses. |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 The (1) VBScript (VBScript.dll) and (2) JScript (JScript.dll) scripting engines 5.1 and 5.6, as used in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, do not properly decode script, which allows remote...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Feb 12, 2008 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Unspecified vulnerability in Active Directory on Microsoft Windows 2000 and Windows Server 2003, and Active Directory Application Mode (ADAM) on XP and Server 2003, allows remote attackers to cause a denial of service (h...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Jan 8, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 Unspecified vulnerability in Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2 allows local users to gain privileges via a crafted local procedure call...Show more |
1Microsoft 6Home Server Small Business ServerWindows 2000+3 moreApr 23, 2026 Jan 8, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 The kernel in Microsoft Windows 2000 SP4, XP SP2, and Server 2003, when ICMP Router Discovery Protocol (RDP) is enabled, allows remote attackers to cause a denial of service via fragmented router advertisement ICMP packe...Show more |
The CryptGenRandom function in Microsoft Windows 2000 generates predictable values, which makes it easier for context-dependent attackers to reduce the effectiveness of cryptographic mechanisms, as demonstrated by attack...Show more |
1Microsoft 6Jet OfficeWindows 2000+3 moreApr 23, 2026 Nov 20, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allows user-assisted attackers to execute arbitrary code via a crafted MDB...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows Server 2003Apr 23, 2026 Nov 14, 2007 N/A· v4 N/A· v3 6.4 MEDIUM· v2 The DNS server in Microsoft Windows 2000 Server SP4, and Server 2003 SP1 and SP2, uses predictable transaction IDs when querying other DNS servers, which allows remote attackers to spoof DNS replies, poison the DNS cache...Show more |
1Microsoft 4Windows 2000 Windows 2003 ServerWindows Vista+1 moreApr 23, 2026 Oct 9, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 rpcrt4.dll (aka the RPC runtime library) in Microsoft Windows XP SP2, XP Professional x64 Edition, Server 2003 SP1 and SP2, Server 2003 x64 Edition and x64 Edition SP2, and Vista and Vista x64 Edition allows remote attac...Show more |
Stack-based buffer overflow in agentdpv.dll 2.0.0.3425 in Microsoft Agent on Windows 2000 SP4 allows remote attackers to execute arbitrary code via a crafted URL to the Agent (Agent.Control) ActiveX control, which trigge...Show more |
1Microsoft 4Windows 2000 Windows 2003 ServerWindows Server 2003+1 moreApr 23, 2026 Aug 14, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image)...Show more |