CVEs (2,368)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 6Windows 2003 Server Windows 7Windows Server 2003+3 moreApr 29, 2026 Aug 11, 2010 N/A· v4 N/A· v3 7.2 HIGH· v2 The Windows kernel-mode drivers in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not properly validate pseudo-...Show more |
1Microsoft 3Windows 7 Windows Server 2008Windows VistaApr 29, 2026 Aug 11, 2010 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Integer overflow in the TCP/IP stack in Microsoft Windows Vista SP1, Windows Server 2008 Gold and R2, and Windows 7 allows local users to gain privileges via a buffer of user-mode data that is copied to kernel mode, aka...Show more |
1Microsoft 3Windows 7 Windows Server 2008Windows VistaApr 29, 2026 Aug 11, 2010 N/A· v4 N/A· v3 7.8 HIGH· v2 The TCP/IP stack in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly handle malformed IPv6 packets, which allows remote attackers to cause a denial of service (s...Show more |
1Microsoft 3Windows 7 Windows Server 2008Windows VistaApr 29, 2026 Aug 11, 2010 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The kernel in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate ACLs on kernel objects, which allows local users to cause a denial of service (reboot) vi...Show more |
1Microsoft 6Windows 2003 Server Windows 7Windows Server 2003+3 moreApr 29, 2026 Aug 11, 2010 N/A· v4 N/A· v3 4.4 MEDIUM· v2 The Windows kernel-mode drivers in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not properly validate an unsp...Show more |
1Microsoft 5Windows 7 Windows Server 2003Windows Server 2008+2 moreApr 22, 2026 Jul 22, 2010 N/A· v4 7.8 HIGH· v3 9.3 HIGH· v2 Windows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 allows local users or remote attackers to execute arbitrary code via a crafted (1) .LNK or (2) .PIF sho...Show more |
1Microsoft 6Windows 2000 Windows 2003 ServerWindows 7+3 moreApr 29, 2026 Jun 8, 2010 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 Gold and SP2, Windows 7, and Server 2008 R2 allows local users to execute arbit...Show more |
1Microsoft 5Windows 2003 Server Windows 7Windows Server 2008+2 moreApr 29, 2026 Jun 8, 2010 N/A· v4 N/A· v3 9.3 HIGH· v2 Multiple unspecified vulnerabilities in the Microsoft Internet Explorer 8 Developer Tools ActiveX control in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows...Show more |
1Microsoft 6Windows 2000 Windows 2003 ServerWindows 7+3 moreApr 29, 2026 Jun 8, 2010 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 Gold and SP2, Windows 7, and Server 2008 R2 "do not properly validate all callb...Show more |
1Microsoft 6Windows 2000 Windows 2003 ServerWindows 7+3 moreApr 29, 2026 Jun 8, 2010 N/A· v4 N/A· v3 7.2 HIGH· v2 Unspecified vulnerability in the Windows OpenType Compact Font Format (CFF) driver in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 allows local use...Show more |
1Microsoft 2Windows 7 Windows Server 2008Apr 29, 2026 May 14, 2010 N/A· v4 N/A· v3 9.3 HIGH· v2 Integer overflow in cdd.dll in the Canonical Display Driver (CDD) in Microsoft Windows Server 2008 R2 and Windows 7 on 64-bit platforms, when the Windows Aero theme is installed, allows context-dependent attackers to cau...Show more |
1Microsoft 7Windows 2000 Windows 2003 ServerWindows 7+4 moreApr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 9.3 HIGH· v2 The Authenticode Signature verification functionality in cabview.dll in Cabinet File Viewer Shell Extension 5.1, 6.0, and 6.1 in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista...Show more |
1Microsoft 7Windows 2000 Windows 2003 ServerWindows 7+4 moreApr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 9.3 HIGH· v2 The WinVerifyTrust function in Authenticode Signature Verification 5.1, 6.0, and 6.1 in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 G...Show more |
1Microsoft 2Windows 7 Windows Server 2008Apr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 4.7 MEDIUM· v2 The kernel in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate relocation sections of image files, which allows local users to cause a denial of service (reboot) via a crafted file, aka "Windows...Show more |
1Microsoft 3Windows 7 Windows Server 2008Windows VistaApr 29, 2026 Apr 14, 2010 N/A· v4 5.5 MEDIUM· v3 4.7 MEDIUM· v2 The kernel in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly translate a registry key's virtual path to its real path, which allows local users to cause...Show more |
1Microsoft 2Windows 7 Windows Server 2008Apr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 10.0 HIGH· v2 The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly handle (1) SMBv1 and (2) SMBv2 response packets, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary cod...Show more |
1Microsoft 5Windows 2003 Server Windows 7Windows Server 2003+2 moreApr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 10.0 HIGH· v2 The SMB client in Microsoft Windows Server 2003 SP2, Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2 allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code or cause a denial of...Show more |
1Microsoft 2Windows 7 Windows Server 2008Apr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 10.0 HIGH· v2 The SMB client in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate fields in SMB transaction responses, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code o...Show more |
1Microsoft 7Windows 2000 Windows 2003 ServerWindows 7+4 moreApr 29, 2026 Apr 14, 2010 N/A· v4 N/A· v3 10.0 HIGH· v2 The SMB client in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly allocate memory for...Show more |
1Microsoft 8Internet Explorer Windows 2000Windows 2003 Server+5 moreApr 29, 2026 Mar 31, 2010 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Cross-domain vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted HTML docume...Show more |