Microsoft
microsoft
14,951 CVEs • 1,050 products
Products (1,050)
Click to collapseToggle
Products (1,050)
Click to collapse
CVEs (14,951)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 3Internet Information Server Windows 2000Windows NtApr 16, 2026 Jun 16, 1999 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions. |
The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files. |
Buffer overflow in Internet Explorer 5 allows remote attackers to execute commands via a malformed Favorites icon. |
Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option. |
Buffer overflow in Remote Access Service (RAS) client allows an attacker to execute commands or cause a denial of service via a malformed phonebook entry. |
Buffer overflow in Windows NT 4.0 help file utility via a malformed help file. |
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scripted paste" as described in MS:MS98-013. |
1Microsoft 1Internet Information Server Apr 16, 2026 May 12, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Denial of service in Windows NT IIS server using ..\.. |
A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information. |
Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang. |
1Microsoft 1Internet Information Server Apr 16, 2026 May 7, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The codebrws.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. |
1Microsoft 1Internet Information Server Apr 16, 2026 May 7, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The code.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. |
1Microsoft 1Internet Information Server Apr 16, 2026 May 7, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The viewcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. |
1Microsoft 1Internet Information Server Apr 16, 2026 May 7, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The showcode.asp sample file in IIS and Site Server allows remote attackers to read arbitrary files. |
1Microsoft 5Excel Windows 2000Windows 95+2 moreApr 16, 2026 May 7, 1999 N/A· v4 N/A· v3 2.6 LOW· v2 A remote attacker can disable the virus warning mechanism in Microsoft Excel 97. |
Internet Explorer 5.0 does not properly reset the username/password cache for Web sites that do not use standard cache controls, which could allow users on the same system to access restricted web sites that were visited...Show more |
Internet Explorer, with a security setting below Medium, allows remote attackers to execute arbitrary commands via a malicious web page that uses the FileSystemObject ActiveX object. |
Microsoft NetMeeting 2.1 allows one client to read the contents of another client's clipboard via a CTRL-C in the chat box when the box is empty. |
The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files. |
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to learn information about a local user's files via an IMG SRC tag. |