|
277941
|
- |
|
microsoft
|
windows_2000 windows_2003_server windows_server_2003 windows_xp
|
Stack-based buffer overflow in VBScript in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, when Internet Explorer is used, might allow user-assisted remote attackers to execute arbit…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0917
|
2019-02-26 23:04 |
2010-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277942
|
- |
|
microsoft
|
windows_2003_server windows_server_2003 windows_xp
|
The MPC::HexToNum function in helpctr.exe in Microsoft Windows Help and Support Center in Windows XP and Windows Server 2003 does not properly handle malformed escape sequences, which allows remote a…
|
CWE-78
OS Command
|
CVE-2010-1885
|
2019-02-26 23:04 |
2010-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277943
|
- |
|
microsoft
|
windows_2003_server windows_server_2003 windows_xp
|
Per: http://blogs.technet.com/b/msrc/archive/2010/06/10/windows-help-vulnerability-disclosure.aspx
"customers running Windows Vista, Windows 7, Windows Server 2008, and Windows Server 2008 R2, are…
|
CWE-78
OS Command
|
CVE-2010-1885
|
2019-02-26 23:04 |
2010-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277944
|
- |
|
microsoft
|
windows_server_2003 windows_xp
|
The RPCSS service in Microsoft Windows XP SP2 and SP3 and Server 2003 SP1 and SP2 does not properly implement isolation among a set of distinct processes that (1) all run under the NetworkService acc…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0079
|
2019-02-26 23:04 |
2009-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277945
|
- |
|
microsoft
|
directx
|
Use-after-free vulnerability in DirectShow in Microsoft DirectX 8.1 and 9.0 allows remote attackers to execute arbitrary code via an MJPEG file or video stream with a malformed Huffman table, which t…
|
CWE-94
Code Injection
|
CVE-2009-0084
|
2019-02-26 23:04 |
2009-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277946
|
- |
|
microsoft
|
office_converter_pack office_word windows_2000 windows_server_2003 windows_xp
|
The WordPerfect 6.x Converter (WPFT632.CNV, 1998.1.27.0) in Microsoft Office Word 2000 SP3 and Microsoft Office Converter Pack does not properly validate the length of an unspecified string, which al…
|
CWE-20
Improper Input Validation
|
CVE-2009-0088
|
2019-02-26 23:04 |
2009-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277947
|
- |
|
microsoft
|
windows_2000 windows_server_2003 windows_server_2008
|
Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when dynamic updates are enabled, does not restrict registration of the "wpad" hostname, which allows remot…
|
CWE-20
Improper Input Validation
|
CVE-2009-0093
|
2019-02-26 23:04 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277948
|
- |
|
microsoft
|
windows_2000 windows_server_2003 windows_server_2008
|
The WINS server in Microsoft Windows 2000 SP4 and Server 2003 SP1 and SP2 does not restrict registration of the (1) "wpad" and (2) "isatap" NetBIOS names, which allows remote authenticated users to h…
|
NVD-CWE-Other
|
CVE-2009-0094
|
2019-02-26 23:04 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277949
|
- |
|
microsoft
|
windows_2000 windows_server_2003 windows_server_2008
|
Per: http://www.microsoft.com/technet/security/Bulletin/MS09-008.mspx
Mitigating Factors for WPAD WINS Server Registration Vulnerability - CVE-2009-0094
Mitigation refers to a setting, common c…
|
NVD-CWE-Other
|
CVE-2009-0094
|
2019-02-26 23:04 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
277950
|
- |
|
microsoft
|
windows_2000 windows_server_2003 windows_server_2008
|
The DNS Resolver Cache Service (aka DNSCache) in Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when dynamic updates are enabled, does not reuse cached DN…
|
CWE-20
Improper Input Validation
|
CVE-2009-0233
|
2019-02-26 23:04 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|