← Back

Windows 95

windows_95

Vendor: Microsoft • 46 CVEs

CVEs (46)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
3Windows 95
Windows 98Windows 98se
Apr 16, 2026
Mar 4, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability.
1Microsoft
3Windows 95
Windows 98Windows Nt
Apr 16, 2026
Feb 18, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive.
1Microsoft
3Windows 95
Windows 98Windows Nt
Apr 16, 2026
Feb 4, 2000
N/A· v4
N/A· v3
2.1 LOW· v2
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.
1Microsoft
1Windows 95
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an administrator logs in remotely, which allows remote attackers to read arbitrary files by mapping the n...Show more
Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an administrator logs in remotely, which allows remote attackers to read arbitrary files by mapping the network drive.Show less
1Microsoft
1Windows 95
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users to gain privileges by decrypting the passwords.
1Microsoft
3Windows 95
Windows 98Windows Nt
Apr 16, 2026
Dec 10, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when...Show more
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed.Show less
1Microsoft
2Windows 95
Windows 98
Apr 16, 2026
Nov 29, 1999
N/A· v4
N/A· v3
7.8 HIGH· v2
A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords.
1Microsoft
2Windows 95
Windows 98
Apr 16, 2026
Nov 12, 1999
N/A· v4
N/A· v3
7.6 HIGH· v2
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability.
1Microsoft
4Terminal Server
Windows 95Windows 98se+1 more
Apr 16, 2026
Sep 20, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed Route Pointer" vulnerability.
1Microsoft
2Windows 95
Windows 98
Apr 16, 2026
Aug 16, 1999
N/A· v4
N/A· v3
2.6 LOW· v2
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
2Microsoft
Sun
5Solaris
SunosWindows 2000+2 more
Apr 16, 2026
Aug 11, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes.
1Microsoft
4Windows 2000
Windows 95Windows 98+1 more
Apr 16, 2026
Jul 3, 1999
N/A· v4
N/A· v3
7.8 HIGH· v2
Denial of service in various Windows systems via malformed, fragmented IGMP packets.
1Microsoft
5Excel
Windows 2000Windows 95+2 more
Apr 16, 2026
May 7, 1999
N/A· v4
N/A· v3
2.6 LOW· v2
A remote attacker can disable the virus warning mechanism in Microsoft Excel 97.
1Microsoft
3Windows 95
Windows 98Windows Nt
Apr 16, 2026
Apr 12, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files.
1Microsoft
3Windows 95
Windows 98Windows Nt
Apr 16, 2026
Mar 8, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables.
1Microsoft
2Windows 95
Windows 98
Apr 16, 2026
Feb 6, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) pac...Show more
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing.Show less
1Microsoft
2Windows 95
Windows Nt
Apr 16, 2026
Oct 5, 1998
N/A· v4
N/A· v3
5.0 MEDIUM· v2
TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections by forcing a reset (RST) via a PSH ACK or other means, obtaining the target's last sequence...Show more
TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections by forcing a reset (RST) via a PSH ACK or other means, obtaining the target's last sequence number from the resulting packet, then spoofing a reset to the target.Show less
1Microsoft
2Windows 95
Windows Nt
Apr 16, 2026
Feb 13, 1998
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Bonk variation of teardrop IP fragmentation denial of service.
2Jgaa
Microsoft
3Warftpd
Windows 95Windows Nt
Apr 16, 2026
Feb 1, 1998
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in War FTP allows remote execution of commands.
4Caldera
HpMicrosoft+1 more
5Hp Ux
OpenlinuxSunos+2 more
Apr 16, 2026
Dec 16, 1997
N/A· v4
N/A· v3
5.0 MEDIUM· v2
A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.