CVEs (456)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 6Home Server Small Business ServerWindows 2000+3 moreApr 23, 2026 Jan 8, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 The kernel in Microsoft Windows 2000 SP4, XP SP2, and Server 2003, when ICMP Router Discovery Protocol (RDP) is enabled, allows remote attackers to cause a denial of service via fragmented router advertisement ICMP packe...Show more |
1Microsoft 3Windows 2000 Windows 2003 ServerWindows Server 2003Apr 23, 2026 Nov 14, 2007 N/A· v4 N/A· v3 6.4 MEDIUM· v2 The DNS server in Microsoft Windows 2000 Server SP4, and Server 2003 SP1 and SP2, uses predictable transaction IDs when querying other DNS servers, which allows remote attackers to spoof DNS replies, poison the DNS cache...Show more |
23ware Microsoft53dm Disk Management Software Windows 2003 ServerWindows Server 2003+2 moreApr 23, 2026 Sep 27, 2007 N/A· v4 N/A· v3 7.1 HIGH· v2 Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file with a large tEXt chunk that possibly triggers an integer overflow in...Show more |
1Microsoft 4Windows 2000 Windows 2003 ServerWindows Server 2003+1 moreApr 23, 2026 Aug 14, 2007 N/A· v4 N/A· v3 9.3 HIGH· v2 Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image)...Show more |
1Microsoft 2Windows Server 2003 Windows XpApr 23, 2026 Oct 10, 2006 N/A· v4 N/A· v3 5.1 MEDIUM· v2 Argument injection vulnerability in the Windows Object Packager (packager.exe) in Microsoft Windows XP SP1 and SP2 and Server 2003 SP1 and earlier allows remote user-assisted attackers to execute arbitrary commands via a...Show more |
1Microsoft 3Windows 2000 Windows Server 2003Windows XpApr 16, 2026 Jun 13, 2006 N/A· v4 N/A· v3 10.0 HIGH· v2 The Server Message Block (SMB) driver (MRXSMB.SYS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows local users to execute arbitrary code by calling the MrxSmbCscIoctlOpenForCopyChunk...Show more |
1Microsoft 7Windows 2000 Windows 2000 Advanced ServerWindows 2003 Server+4 moreApr 16, 2026 Feb 14, 2006 N/A· v4 N/A· v3 9.3 HIGH· v2 Buffer overflow in the plug-in for Microsoft Windows Media Player (WMP) 9 and 10, when used in browsers other than Internet Explorer and set as the default application to handle media files, allows remote attackers to ex...Show more |
1Microsoft 4Exchange Server Windows 2000Windows Server 2003+1 moreApr 16, 2026 Oct 13, 2005 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in Collaboration Data Objects (CDO), as used in Microsoft Windows and Microsoft Exchange Server, allows remote attackers to execute arbitrary code when CDOSYS or CDOEX processes an e-mail message with a l...Show more |
1Microsoft 3Exchange Server Windows Server 2003Windows XpApr 16, 2026 Nov 3, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 The SMTP (Simple Mail Transfer Protocol) component of Microsoft Windows XP 64-bit Edition, Windows Server 2003, Windows Server 2003 64-bit Edition, and the Exchange Routing Engine component of Exchange Server 2003, allow...Show more |
1Microsoft 4Exchange Server Windows 2000Windows Nt+1 moreApr 16, 2026 Nov 3, 2004 N/A· v4 N/A· v3 10.0 HIGH· v2 The Network News Transfer Protocol (NNTP) component of Microsoft Windows NT Server 4.0, Windows 2000 Server, Windows Server 2003, Exchange 2000 Server, and Exchange Server 2003 allows remote attackers to execute arbitrar...Show more |
7Juniper McafeeMicrosoft+4 more12Junos NetbsdNetwork Data Loss Prevention+9 moreMay 2, 2025 Aug 18, 2004 N/A· v4 N/A· v3 5.0 MEDIUM· v2 TCP, when using a large Window Size, makes it easier for remote attackers to guess sequence numbers and cause a denial of service (connection loss) to persistent TCP connections by repeatedly injecting a TCP RST packet,...Show more |
1Microsoft 8Internet Explorer OutlookWindows 98+5 moreApr 16, 2026 Jul 27, 2004 N/A· v4 7.8 HIGH· v3 10.0 HIGH· v2 Double free vulnerability in mshtml.dll for certain versions of Internet Explorer 6.x allows remote attackers to cause a denial of service (application crash) via a malformed GIF image. |
1Microsoft 3Windows 2000 Windows Server 2003Windows XpApr 16, 2026 Jun 1, 2004 N/A· v4 7.5 HIGH· v3 7.5 HIGH· v2 The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code...Show more |
1Microsoft 2Windows Server 2003 Windows XpApr 16, 2026 Jun 1, 2004 N/A· v4 N/A· v3 5.1 MEDIUM· v2 Help and Support Center in Microsoft Windows XP SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code via quotation marks in an hcp:// URL, which are not quoted when constructin...Show more |
1Microsoft 3Exchange Server Sharepoint ServicesWindows Server 2003Apr 16, 2026 Jan 20, 2004 N/A· v4 N/A· v3 6.0 MEDIUM· v2 Microsoft Exchange 2003 and Outlook Web Access (OWA), when configured to use NTLM authentication, does not properly reuse HTTP connections, which can cause OWA users to view mailboxes of other users when Kerberos has bee...Show more |
1Microsoft 5Windows 2000 Windows 98Windows Nt+2 moreApr 16, 2026 Nov 17, 2003 N/A· v4 N/A· v3 5.1 MEDIUM· v2 A multi-threaded race condition in the Windows RPC DCOM functionality with the MS03-039 patch installed allows remote attackers to cause a denial of service (crash or reboot) by causing two threads to process the same RP...Show more |