CVEs (405)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 2Windows 2003 Server Windows XpApr 23, 2026 Oct 15, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 afd.sys in the Ancillary Function Driver (AFD) component in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP1 and SP2 does not properly validate input sent from user mode to the kernel, which allows local user...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Media Encoder+2 moreApr 23, 2026 Sep 11, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remote attackers to execute arbitrary code via a long first argument to the GetDetails...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.0 HIGH· v2 The Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate per-user subscriptions, which allows remote authenticated users to e...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.0 HIGH· v2 Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Heap-based buffer overflow in the InternalOpenColorProfile function in mscms.dll in Microsoft Windows Image Color Management System (MSCMS) in the Image Color Management (ICM) component on Windows 2000 SP4, XP SP2 and SP...Show more |
1Microsoft 2Windows 2000 Windows 2003 ServerApr 23, 2026 Jun 12, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 The WINS service on Microsoft Windows 2000 SP4, and Server 2003 SP1 and SP2, does not properly validate data structures in WINS network packets, which allows local users to gain privileges via a crafted packet, aka "Memo...Show more |
1Microsoft 3Windows 2003 Server Windows NtWindows XpApr 23, 2026 Jun 12, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 Active Directory on Microsoft Windows 2000 Server SP4, XP Professional SP2 and SP3, Server 2003 SP1 and SP2, and Server 2008 allows remote authenticated users to cause a denial of service (system hang or reboot) via a cr...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Stack-based buffer overflow in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EMF image file with crafted filename para...Show more |
1Microsoft 5Internet Explorer Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 The HxTocCtrl ActiveX control (hxvz.dll), as used in Microsoft Internet Explorer 5.01 SP4 and 6 SP1, in Windows XP SP2, Server 2003 SP1 and SP2, Vista SP1, and Server 2008, allows remote attackers to execute arbitrary co...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Server 2008+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 Unspecified vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, through Vista SP1, and Server 2008 allows local users to execute arbitrary code via unknown vectors related to impro...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Server 2008+2 moreApr 23, 2026 Apr 8, 2008 N/A· v4 8.1 HIGH· v3 9.3 HIGH· v2 Heap-based buffer overflow in the CreateDIBPatternBrushPt function in GDI in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, and Server 2008 allows remote attackers to execute arbitrary code via an EM...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Apr 8, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 The (1) VBScript (VBScript.dll) and (2) JScript (JScript.dll) scripting engines 5.1 and 5.6, as used in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, do not properly decode script, which allows remote...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Feb 12, 2008 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Unspecified vulnerability in Active Directory on Microsoft Windows 2000 and Windows Server 2003, and Active Directory Application Mode (ADAM) on XP and Server 2003, allows remote attackers to cause a denial of service (h...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows XpApr 23, 2026 Jan 8, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 Unspecified vulnerability in Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2 allows local users to gain privileges via a crafted local procedure call...Show more |
1Microsoft 3Windows 2003 Server Windows VistaWindows XpApr 23, 2026 Jan 8, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Unspecified vulnerability in the kernel in Microsoft Windows XP SP2, Server 2003, and Vista allows remote attackers to cause a denial of service (CPU consumption) and possibly execute arbitrary code via crafted (1) IGMPv...Show more |
1Microsoft 6Home Server Small Business ServerWindows 2000+3 moreApr 23, 2026 Jan 8, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 The kernel in Microsoft Windows 2000 SP4, XP SP2, and Server 2003, when ICMP Router Discovery Protocol (RDP) is enabled, allows remote attackers to cause a denial of service via fragmented router advertisement ICMP packe...Show more |
1Microsoft 6Jet OfficeWindows 2000+3 moreApr 23, 2026 Nov 20, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allows user-assisted attackers to execute arbitrary code via a crafted MDB...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows Server 2003Apr 23, 2026 Nov 14, 2007 N/A· v4 N/A· v3 6.4 MEDIUM· v2 The DNS server in Microsoft Windows 2000 Server SP4, and Server 2003 SP1 and SP2, uses predictable transaction IDs when querying other DNS servers, which allows remote attackers to spoof DNS replies, poison the DNS cache...Show more |
1Microsoft 4Windows 2000 Windows 2003 ServerWindows Vista+1 moreApr 23, 2026 Oct 9, 2007 N/A· v4 N/A· v3 7.8 HIGH· v2 rpcrt4.dll (aka the RPC runtime library) in Microsoft Windows XP SP2, XP Professional x64 Edition, Server 2003 SP1 and SP2, Server 2003 x64 Edition and x64 Edition SP2, and Vista and Vista x64 Edition allows remote attac...Show more |
23ware Microsoft53dm Disk Management Software Windows 2003 ServerWindows Server 2003+2 moreApr 23, 2026 Sep 27, 2007 N/A· v4 N/A· v3 7.1 HIGH· v2 Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file with a large tEXt chunk that possibly triggers an integer overflow in...Show more |