Microsoft
microsoft
15,661 CVEs • 1,070 products
Products (1,070)
Click to collapseToggle
Products (1,070)
Click to collapse
CVEs (15,661)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Microsoft 4Data Access Components Index ServerInternet Information Server+1 moreApr 16, 2026 Jul 19, 1999 N/A· v4 N/A· v3 10.0 HIGH· v2 The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands. |
1Microsoft 1Internet Information Server Apr 16, 2026 Jul 7, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 IIS 3.x and 4.x does not distinguish between pages requiring encryption and those that do not, which allows remote attackers to cause a denial of service (resource exhaustion) via SSL requests to the HTTPS port for norma...Show more |
1Microsoft 1Internet Information Server Apr 16, 2026 Jul 6, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Sun HotSpot Performance Engine VM allows a remote attacker to cause a denial of service on any server running HotSpot via a URL that includes the [ character. |
A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them. |
1Microsoft 4Windows 2000 Windows 95Windows 98+1 moreApr 16, 2026 Jul 3, 1999 N/A· v4 N/A· v3 7.8 HIGH· v2 Denial of service in various Windows systems via malformed, fragmented IGMP packets. |
An attacker can conduct a denial of service in Windows NT by executing a program with a malformed file image header. |
Denial of service in RAS/PPTP on NT systems. |
Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to b...Show more |
Microsoft Outlook client allows remote attackers to cause a denial of service by sending multiple email messages with the same X-UIDL headers, which causes Outlook to hang. |
The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads are waiting for user input. |
1Microsoft 3Internet Information Server Windows 2000Windows NtApr 16, 2026 Jun 16, 1999 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in IIS 4.0 allows remote attackers to cause a denial of service via a malformed request for files with .HTR, .IDC, or .STM extensions. |
The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files. |
Buffer overflow in Internet Explorer 5 allows remote attackers to execute commands via a malformed Favorites icon. |
Windows NT RRAS and RAS clients cache a user's password even if the user has not selected the "Save password" option. |
Buffer overflow in Remote Access Service (RAS) client allows an attacker to execute commands or cause a denial of service via a malformed phonebook entry. |
Buffer overflow in Windows NT 4.0 help file utility via a malformed help file. |
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to paste a file name into the file upload intrinsic control, a variant of "untrusted scripted paste" as described in MS:MS98-013. |
1Microsoft 1Internet Information Server Apr 16, 2026 May 12, 1999 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Denial of service in Windows NT IIS server using ..\.. |
A configuration problem in the Ad Server Sample directory (AdSamples) in Microsoft Site Server 3.0 allows an attacker to obtain the SITE.CSC file, which exposes sensitive SQL database information. |
Microsoft Outlook Express before 4.72.3612.1700 allows a malicious user to send a message that contains a .., which can inadvertently cause Outlook to re-enter POP3 command mode and cause the POP3 session to hang. |