Microsoft

Windows 2000

517 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 68.9%
  • Published 14.11.2006 21:07:00
  • Last modified 09.04.2025 00:30:58

Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which resu...

  • EPSS 88.27%
  • Published 14.11.2006 21:07:00
  • Last modified 09.04.2025 00:30:58

Stack-based buffer overflow in the NetpManageIPCConnect function in the Workstation service (wkssvc.dll) in Microsoft Windows 2000 SP4 and XP SP2 allows remote attackers to execute arbitrary code via NetrJoinDomain2 RPC messages with a long hostname.

Exploit
  • EPSS 1%
  • Published 06.11.2006 20:07:00
  • Last modified 09.04.2025 00:30:58

The Graphics Rendering Engine in Microsoft Windows 2000 through 2000 SP4 and Windows XP through SP2 maps GDI Kernel structures on a global shared memory section that is mapped with read-only permissions, but can be remapped by other processes as read...

  • EPSS 72.33%
  • Published 10.10.2006 22:07:00
  • Last modified 09.04.2025 00:30:58

Unspecified vulnerability in the Server service in Microsoft Windows 2000 SP4, Server 2003 SP1 and earlier, and XP SP2 and earlier allows remote attackers to execute arbitrary code via a crafted packet, aka "SMB Rename Vulnerability."

  • EPSS 76.87%
  • Published 12.09.2006 23:07:00
  • Last modified 03.04.2025 01:03:51

Cross-site scripting (XSS) vulnerability in the Indexing Service in Microsoft Windows 2000, XP, and Server 2003, when the Encoding option is set to Auto Select, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL, w...

  • EPSS 52.48%
  • Published 12.09.2006 23:07:00
  • Last modified 03.04.2025 01:03:51

Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060912, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a l...

  • EPSS 88.79%
  • Published 09.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the Server Service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers, including anonymous users, to execute arbitrary code via a crafted RPC message, a different vulnerability than CVE-2006-...

  • EPSS 77.43%
  • Published 09.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the Winsock API in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via unknown vectors, aka "Winsock Hostname Vulnerability."

  • EPSS 81.43%
  • Published 09.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the DNS Client service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted record response. NOTE: while MS06-041 implies that there is a single issue, ...

  • EPSS 2.39%
  • Published 09.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Untrusted search path vulnerability in Winlogon in Microsoft Windows 2000 SP4, when SafeDllSearchMode is disabled, allows local users to gain privileges via a malicious DLL in the UserProfile directory, aka "User Profile Elevation of Privilege Vulner...