Microsoft

Windows 2000

517 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.41%
  • Published 12.11.2002 05:00:00
  • Last modified 03.04.2025 01:03:51

The system root folder of Microsoft Windows 2000 has default permissions of Everyone group with Full access (Everyone:F) and is in the search path when locating programs during login or application launch from the desktop, which could allow attackers...

  • EPSS 1.4%
  • Published 04.11.2002 05:00:00
  • Last modified 03.04.2025 01:03:51

NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code as LocalSystem via "shatter" style attack by sending a WM_COPYDATA message followed by a WM_TIMER message, as demon...

  • EPSS 78.34%
  • Published 28.10.2002 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in Microsoft PPTP Service on Windows XP and Windows 2000 allows remote attackers to cause a denial of service (hang) and possibly execute arbitrary code via a certain PPTP packet with malformed control data.

Exploit
  • EPSS 12.07%
  • Published 22.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Memory leak in the SNMP LAN Manager (LANMAN) MIB extension for Microsoft Windows 2000 before SP3, when the Print Spooler is not running, allows remote attackers to cause a denial of service (memory consumption) via a large number of GET or GETNEXT re...

  • EPSS 23.38%
  • Published 11.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Remote Data Protocol (RDP) version 5.0 in Microsoft Windows 2000 and RDP 5.1 in Windows XP does not encrypt the checksums of plaintext session data, which could allow a remote attacker to determine the contents of encrypted sessions via sniffing, aka...

Exploit
  • EPSS 23.79%
  • Published 11.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

The Remote Data Protocol (RDP) version 5.1 in Microsoft Windows XP allows remote attackers to cause a denial of service (crash) when Remote Desktop is enabled via a PDU Confirm Active data packet that does not set the Pattern BLT command, aka "Denial...

  • EPSS 62.99%
  • Published 10.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in SmartHTML Interpreter (shtml.dll) in Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to cause a denial of service (CPU consumption) or run arbitrary code, respectively, via a certain type of web f...

  • EPSS 71.91%
  • Published 10.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the HTML Help ActiveX Control (hhctrl.ocx) in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote attackers to execute code via (1) a long ...

  • EPSS 31.91%
  • Published 10.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

The HTML Help facility in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP uses the Local Computer Security Zone when opening .chm files from the Temporary Internet File...

  • EPSS 9.93%
  • Published 04.10.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote attackers to delete digital certificates on a user's...