CVE-2007-1212
- EPSS 2.14%
- Veröffentlicht 04.04.2007 16:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via a crafted Enhanced Metafile (EMF) image format file.
CVE-2007-1215
- EPSS 2.74%
- Veröffentlicht 04.04.2007 16:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via certain "color-related parameters" in crafted images.
CVE-2007-0038
- EPSS 88.34%
- Veröffentlicht 30.03.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a large length value in the second (or later) a...
CVE-2007-1763
- EPSS 36.76%
- Veröffentlicht 30.03.2007 00:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ATI kernel driver (atikmdag.sys) in Microsoft Windows Vista allows user-assisted remote attackers to cause a denial of service (crash) via a crafted JPG image, as demonstrated by a slideshow, possibly due to a buffer overflow.
CVE-2007-1765
- EPSS 59.33%
- Veröffentlicht 30.03.2007 00:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a malformed ANI file, which results in memory corruption when processing curs...
CVE-2007-1658
- EPSS 76.09%
- Veröffentlicht 24.03.2007 19:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Windows Mail in Microsoft Windows Vista might allow user-assisted remote attackers to execute certain programs via a link to a (1) local file or (2) UNC share pathname in which there is a directory with the same base name as an executable program at ...
- EPSS 24.21%
- Veröffentlicht 20.03.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The LLTD Mapper in Microsoft Windows Vista does not verify that an IP address in a TLV type 0x07 field in a HELLO packet corresponds to a valid IP address for the local network, which allows remote attackers to trick users into communicating with an ...
- EPSS 24.21%
- Veröffentlicht 20.03.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The LLTD Mapper in Microsoft Windows Vista allows remote attackers to spoof hosts, and nonexistent bridge relationships, into the network topology map by using a MAC address that differs from the MAC address provided in the Real Source field of the L...
CVE-2007-1529
- EPSS 19.33%
- Veröffentlicht 20.03.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The LLTD Responder in Microsoft Windows Vista does not send the Mapper a response to a DISCOVERY packet if another host has sent a spoofed response first, which allows remote attackers to spoof arbitrary hosts via a network-based race condition, aka ...
- EPSS 30.08%
- Veröffentlicht 20.03.2007 20:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The LLTD Mapper in Microsoft Windows Vista does not properly gather responses to EMIT packets, which allows remote attackers to cause a denial of service (mapping failure) by omitting an ACK response, which triggers an XML syntax error.