CVE-2010-0486
- EPSS 42.12%
- Veröffentlicht 14.04.2010 16:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The WinVerifyTrust function in Authenticode Signature Verification 5.1, 6.0, and 6.1 in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows ...
CVE-2010-0487
- EPSS 41.04%
- Veröffentlicht 14.04.2010 16:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Authenticode Signature verification functionality in cabview.dll in Cabinet File Viewer Shell Extension 5.1, 6.0, and 6.1 in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Se...
CVE-2010-0810
- EPSS 1.28%
- Veröffentlicht 14.04.2010 16:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The kernel in Microsoft Windows Vista Gold, SP1, and SP2, and Windows Server 2008 Gold and SP2, does not properly handle unspecified exceptions, which allows local users to cause a denial of service (reboot) via a crafted application, aka "Windows Ke...
CVE-2010-0812
- EPSS 51.29%
- Veröffentlicht 14.04.2010 16:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allow remote attackers to bypass intended IPv4 source-address restrictions via a mismatched IPv6 source address in a tunneled ISATAP packet, aka...
CVE-2010-0267
- EPSS 66.17%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 6, 6 SP1, and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corrupti...
CVE-2010-0488
- EPSS 15.55%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 does not properly handle unspecified "encoding strings," which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site, aka "Post Encoding ...
CVE-2010-0489
- EPSS 35.42%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Race condition in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted HTML document that triggers memory corruption, aka "Race Condition Memory Corruption Vulnerability."
CVE-2010-0490
- EPSS 62.1%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 6, 6 SP1, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corru...
CVE-2010-0492
- EPSS 62.85%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in mstime.dll in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via vectors related to the TIME2 behavior, the CTimeAction object, and destruction of markup, leading to memory corruption, ...
CVE-2010-0494
- EPSS 50.18%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-domain vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted HTML document in a situation where the cl...