CVE-2010-0016
- EPSS 40.49%
- Published 10.02.2010 18:30:00
- Last modified 11.04.2025 00:51:21
The SMB client implementation in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly validate response fields, which allows remote SMB servers and man-in-the-middle attackers to execute arbitrary code via a crafted respo...
- EPSS 37.38%
- Published 10.02.2010 18:30:00
- Last modified 11.04.2025 00:51:21
The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate request fie...
CVE-2010-0021
- EPSS 11.41%
- Published 10.02.2010 18:30:00
- Last modified 11.04.2025 00:51:21
Multiple race conditions in the SMB implementation in the Server service in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allow remote attackers to cause a denial of service (system hang) via a craft...
CVE-2010-0555
- EPSS 31.39%
- Published 04.02.2010 20:15:25
- Last modified 11.04.2025 00:51:21
Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not prevent rendering of non-HTML local files as HTML documents, which allows remote attackers to bypass intended access restrictions and read arbitrary files via vectors involving the pro...
CVE-2010-0027
- EPSS 50.11%
- Published 22.01.2010 22:00:00
- Last modified 11.04.2025 00:51:21
The URL validation functionality in Microsoft Internet Explorer 5.01, 6, 6 SP1, 7 and 8, and the ShellExecute API function in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2, does not properly process input parameters, which allows remote attac...
CVE-2010-0232
- EPSS 76.74%
- Published 21.01.2010 19:30:00
- Last modified 11.04.2025 00:51:21
The kernel in Microsoft Windows NT 3.1 through Windows 7, including Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2, when access to 16-bit applications is enabl...
CVE-2010-0018
- EPSS 68.95%
- Published 13.01.2010 19:30:00
- Last modified 09.04.2025 00:30:58
Integer overflow in the Embedded OpenType (EOT) Font Engine (t2embed.dll) in Microsoft Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows re...
CVE-2009-4210
- EPSS 24.04%
- Published 13.12.2009 01:30:00
- Last modified 09.04.2025 00:30:58
The Indeo codec in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted media content.
CVE-2009-4309
- EPSS 30.17%
- Published 13.12.2009 01:30:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a large size value in a movi record in an IV41 str...
CVE-2009-4310
- EPSS 30.17%
- Published 13.12.2009 01:30:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in the Intel Indeo41 codec for Windows Media Player in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via crafted compressed video data in an IV41 stream i...