CVEs (46)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 3Windows 2000 Windows 95Windows 98Apr 23, 2026 Jan 15, 2009 N/A· v4 N/A· v3 7.6 HIGH· v2 Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service (connectivity loss) or steal credentials via a 1Ch registration that causes WINS to change the domain controller to point to a m...Show more |
1Microsoft 7Windows 2000 Windows 2003 ServerWindows 95+4 moreApr 16, 2026 Jul 27, 2005 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in a certain USB driver, as used on Microsoft Windows, allows attackers to execute arbitrary code. |
Buffer overflow in backup utility of Microsoft Windows 95 allows attackers to execute arbitrary code by causing a filename with a long extension to be placed in a folder to be backed up. |
1Microsoft 8Windows 2000 Windows 2000 Terminal ServicesWindows 95+5 moreApr 16, 2026 Dec 23, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a local user's username via a Java applet that accesses the user.dir system property, aka "User.dir Exposure Vulnerability." |
1Microsoft 8Windows 2000 Windows 2000 Terminal ServicesWindows 95+5 moreApr 16, 2026 Dec 23, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 The Java Database Connectivity (JDBC) APIs in Microsoft Virtual Machine (VM) 5.0.3805 and earlier allow remote attackers to bypass security checks and access database contents via an untrusted Java applet. |
1Microsoft 8Windows 2000 Windows 2000 Terminal ServicesWindows 95+5 moreApr 16, 2026 Dec 23, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Internet Explorer and other applications, allow remote attackers to read files via a Java applet with a spoofed locatio...Show more |
1Microsoft 8Windows 2000 Windows 2000 Terminal ServicesWindows 95+5 moreApr 16, 2026 Dec 23, 2002 N/A· v4 N/A· v3 10.0 HIGH· v2 Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a Java applet that invokes COM (Component Object Model) objects in a web site or an HTML ma...Show more |
1Microsoft 6Windows 2000 Windows 95Windows 98+3 moreApr 16, 2026 Mar 8, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in SNMP agent service in Windows 95/98/98SE, Windows NT 4.0, Windows 2000, and Windows XP allows remote attackers to cause a denial of service or execute arbitrary code via a malformed management request....Show more |
1Microsoft 6Windows 2000 Windows 95Windows 98+3 moreApr 16, 2026 Jul 2, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests. |
1Microsoft 5Windows 95 Windows 98Windows 98se+2 moreApr 16, 2026 Jan 9, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connec...Show more |
1Microsoft 4Windows 95 Windows 98Windows 98se+1 moreApr 16, 2026 Dec 19, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network. |
1Microsoft 4Windows 95 Windows 98Windows 98se+1 moreApr 16, 2026 Dec 19, 2000 N/A· v4 N/A· v3 6.4 MEDIUM· v2 File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password t...Show more |
1Microsoft 3Windows 95 Windows 98Windows 98seApr 16, 2026 Dec 11, 2000 N/A· v4 N/A· v3 2.6 LOW· v2 NETBIOS client in Windows 95 and Windows 98 allows a remote attacker to cause a denial of service by changing a file sharing service to return an unknown driver type, which causes the client to crash. |
The IPX protocol implementation in Microsoft Windows 95 and 98 allows remote attackers to cause a denial of service by sending a ping packet with a source IP address that is a broadcast address, aka the "Malformed IPX Pi...Show more |
1Microsoft 4Windows 2000 Windows 95Windows 98+1 moreApr 16, 2026 Aug 29, 2000 N/A· v4 N/A· v3 7.5 HIGH· v2 Interactions between the CIFS Browser Protocol and NetBIOS as implemented in Microsoft Windows 95, 98, NT, and 2000 allow remote attackers to modify dynamic NetBIOS name cache entries via a spoofed Browse Frame Request i...Show more |
Windows 95 and Windows 98 do not properly process spoofed ARP packets, which allows remote attackers to overwrite static entries in the cache table. |
3Apple LinuxMicrosoft6Linux Kernel MacosWindows 2000+3 moreApr 16, 2026 Jun 1, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 A system does not present an appropriate legal message or warning to a user who is accessing it. |
1Microsoft 5Terminal Server Windows 2000Windows 95+2 moreApr 16, 2026 May 25, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the "ResetBrowser Frame" vulnerability. |
2Be Microsoft6Beos Terminal ServerWindows 2000+3 moreApr 16, 2026 May 19, 2000 N/A· v4 N/A· v3 7.8 HIGH· v2 Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by sending a large number of identical fragmented IP packets, aka jolt2 or the "IP Fr...Show more |
Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name. |