CVE-2007-0025
- EPSS 65.29%
- Published 13.02.2007 20:28:00
- Last modified 09.04.2025 00:30:58
The MFC component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 and Visual Studio .NET 2000, 2002 SP1, 2003, and 2003 SP1 allows user-assisted remote attackers to execute arbitrary code via an RTF file with a malformed OLE object that triggers ...
CVE-2006-6133
- EPSS 72.54%
- Published 28.11.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in Visual Studio Crystal Reports for Microsoft Visual Studio .NET 2002 and 2002 SP1, .NET 2003 and 2003 SP1, and 2005 and 2005 SP1 (formerly Business Objects Crystal Reports XI Professional) allows user-assisted remote att...
CVE-2006-4704
- EPSS 73.17%
- Published 01.11.2006 15:07:00
- Last modified 09.04.2025 00:30:58
Cross-zone scripting vulnerability in the WMI Object Broker (WMIScriptUtils.WMIObjectBroker2) ActiveX control (WmiScriptUtils.dll) in Microsoft Visual Studio 2005 allows remote attackers to bypass Internet zone restrictions and execute arbitrary code...
CVE-2006-0187
- EPSS 37.4%
- Published 12.01.2006 06:02:00
- Last modified 03.04.2025 01:03:51
By design, Microsoft Visual Studio 2005 automatically executes code in the Load event of a user-defined control (UserControl1_Load function), which allows user-assisted attackers to execute arbitrary code by tricking the user into opening a malicious...
CVE-2005-2127
- EPSS 44.57%
- Published 19.08.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for...
CVE-2004-0200
- EPSS 76.69%
- Published 28.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to...
CVE-2004-0204
- EPSS 77.62%
- Published 06.08.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Directory traversal vulnerability in the web viewers for Business Objects Crystal Reports 9 and 10, and Crystal Enterprise 9 or 10, as used in Visual Studio .NET 2003 and Outlook 2003 with Business Contact Manager, Microsoft Business Solutions CRM 1....