CVEs (828)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Stack-based buffer overflow in Microsoft Device IO Control in iphlpapi.dll in Microsoft Windows Vista Gold and SP1 allows local users in the Network Configuration Operator group to gain privileges or cause a denial of se...Show more |
1Microsoft 2Windows Server 2003 Windows VistaApr 23, 2026 Nov 12, 2008 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Race condition in Microsoft Windows Server 2003 and Vista allows local users to cause a denial of service (crash or hang) via a multi-threaded application that makes many calls to UnhookWindowsHookEx while certain other...Show more |
1Microsoft 4Windows Windows 2000Windows Server 2008+1 moreApr 23, 2026 Nov 12, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Microsoft Windows 2000 Gold through SP4, XP Gold through SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote SMB servers to execute arbitrary code on a client machine by replaying the NTLM cre...Show more |
1Microsoft 5Windows 2000 Windows Server 2003Windows Server 2008+2 moreMay 21, 2026 Oct 23, 2008 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, and 7 Pre-Beta allows remote attackers to execute arbitrary code via a crafted RPC request that...Show more |
12Bsd BsdiCisco+9 more19Bsd Bsd OsCatalyst Blade Switch 3020 Firmware+16 moreApr 23, 2026 Oct 20, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue...Show more |
1Microsoft 5Windows 2000 Windows Server 2003Windows Server 2008+2 moreApr 23, 2026 Oct 15, 2008 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer underflow in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote attackers to execute arbitrary code via a Server Message Block (SMB) request that...Show more |
1Microsoft 4Windows Server 2003 Windows Server 2008Windows Vista+1 moreApr 23, 2026 Oct 15, 2008 N/A· v4 8.4 HIGH· v3 7.2 HIGH· v2 Integer overflow in Memory Manager in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows local users to gain privileges via a crafted application that triggers an errone...Show more |
1Microsoft 5Windows 2000 Windows Server 2003Windows Server 2008+2 moreApr 23, 2026 Oct 15, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate parameters sent from user mode to the kernel, which allows local users to...Show more |
1Microsoft 5Windows 2000 Windows Server 2003Windows Server 2008+2 moreApr 23, 2026 Oct 15, 2008 N/A· v4 N/A· v3 7.2 HIGH· v2 The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate window properties sent from a parent window to a child window during creat...Show more |
Microsoft Windows Vista Home and Ultimate Edition SP1 and earlier allows local users to cause a denial of service (page fault and system crash) via multiple attempts to access a virtual address in a PAGE_NOACCESS memory...Show more |
1Microsoft 5Windows 2000 Windows Server 2003Windows Server 2008+2 moreApr 23, 2026 Sep 16, 2008 N/A· v4 N/A· v3 7.1 HIGH· v2 srv.sys in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote attackers to cause a denial of service (system crash) or possibly ha...Show more |
1Microsoft 14Digital Image Suite Forefront Client SecurityInternet Explorer+11 moreApr 23, 2026 Sep 11, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Buffer overflow in gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office...Show more |
1Microsoft 13Digital Image Suite Forefront Client SecurityInternet Explorer+10 moreApr 23, 2026 Sep 11, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP...Show more |
1Microsoft 16Digital Image Suite Forefront Client SecurityInternet Explorer+13 moreApr 23, 2026 Sep 11, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP...Show more |
1Microsoft 16Digital Image Suite Forefront Client SecurityInternet Explorer+13 moreApr 23, 2026 Sep 11, 2008 N/A· v4 N/A· v3 9.3 HIGH· v2 Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold a...Show more |
Microsoft Bitlocker in Windows Vista before SP1 stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer during boot, which allows local users to obtain sensitive information by...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.0 HIGH· v2 The Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate per-user subscriptions, which allows remote authenticated users to e...Show more |
1Microsoft 5Windows 2000 Windows 2003 ServerWindows Nt+2 moreApr 23, 2026 Aug 13, 2008 N/A· v4 N/A· v3 9.0 HIGH· v2 Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a...Show more |
Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and al...Show more |
Windows Explorer in Microsoft Windows Vista up to SP1, and Server 2008, allows user-assisted remote attackers to execute arbitrary code via crafted saved-search (.search-ms) files that are not properly handled when savin...Show more |