CVEs (2,368)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 5Windows 2003 Server Windows 7Windows Server 2008+2 moreApr 23, 2026 Oct 14, 2009 N/A· v4 N/A· v3 7.8 HIGH· v2 Integer underflow in the NTLM authentication feature in the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Serve...Show more |
1Microsoft 6Windows 2000 Windows 7Windows Server 2003+3 moreApr 23, 2026 Oct 14, 2009 N/A· v4 N/A· v3 7.5 HIGH· v2 Integer overflow in the CryptoAPI component in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows ma...Show more |
1Microsoft 6Windows 2000 Windows 2003 ServerWindows 7+3 moreApr 23, 2026 Oct 14, 2009 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The CryptoAPI component in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, as used by Internet Explorer...Show more |
1Microsoft 7.net Framework Windows 2000Windows 7+4 moreApr 23, 2026 Oct 14, 2009 N/A· v4 N/A· v3 9.3 HIGH· v2 The Common Language Runtime (CLR) in Microsoft .NET Framework 2.0, 2.0 SP1, 2.0 SP2, 3.5, and 3.5 SP1, and Silverlight 2, does not properly handle interfaces, which allows remote attackers to execute arbitrary code via (...Show more |
1Microsoft 7Internet Explorer Windows 2000Windows 7+4 moreApr 23, 2026 Oct 14, 2009 N/A· v4 8.8 HIGH· v3 9.3 HIGH· v2 Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted data stream header that triggers memory corruption, aka "Data Stream Head...Show more |
1Microsoft 7.net Framework Windows 2000Windows 7+4 moreApr 23, 2026 Oct 14, 2009 N/A· v4 N/A· v3 9.3 HIGH· v2 Microsoft .NET Framework 2.0, 2.0 SP1, and 3.5 does not properly enforce a certain type-equality constraint in .NET verifiable code, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser...Show more |
1Microsoft 7.net Framework Windows 2000Windows 7+4 moreApr 23, 2026 Oct 14, 2009 N/A· v4 N/A· v3 9.3 HIGH· v2 Microsoft .NET Framework 1.0 SP3, 1.1 SP1, and 2.0 SP1 does not properly validate .NET verifiable code, which allows remote attackers to obtain unintended access to stack memory, and execute arbitrary code, via (1) a cra...Show more |
1Microsoft 2Internet Explorer Windows 7Apr 23, 2026 Aug 14, 2009 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Microsoft Internet Explorer 8.0.7100.0 on Windows 7 RC on the x64 platform allows remote attackers to cause a denial of service (application crash) via a certain DIV element in conjunction with SCRIPT elements that have...Show more |