Microsoft

Windows Vista

828 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 58.35%
  • Published 10.06.2009 18:00:00
  • Last modified 09.04.2025 00:30:58

The RPC Marshalling Engine (aka NDR) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly maintain its internal state, which allows remote attackers to overwrite arbitrary mem...

Exploit
  • EPSS 0.23%
  • Published 01.06.2009 19:30:00
  • Last modified 09.04.2025 00:30:58

win32k.sys in Microsoft Windows Server 2003 and Vista allows local users to cause a denial of service (system crash) via vectors related to CreateWindow, TranslateMessage, and DispatchMessage, possibly a race condition between threads, a different vu...

  • EPSS 1.63%
  • Published 15.04.2009 08:00:00
  • Last modified 09.04.2025 00:30:58

The Windows Management Instrumentation (WMI) provider in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly implement isolation among a set of distinct processes that (1) all run under the...

  • EPSS 2.15%
  • Published 15.04.2009 08:00:00
  • Last modified 09.04.2025 00:30:58

The ThreadPool class in Windows Vista Gold and SP1, and Server 2008, does not properly implement isolation among a set of distinct processes that (1) all run under the NetworkService account or (2) all run under the LocalService account, which allows...

  • EPSS 52.49%
  • Published 15.04.2009 08:00:00
  • Last modified 09.04.2025 00:30:58

Integer underflow in Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote HTTP servers to execute arbitrary code via crafted parameter values in ...

  • EPSS 12.82%
  • Published 15.04.2009 08:00:00
  • Last modified 09.04.2025 00:30:58

Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, and Vista Gold allows remote web servers to impersonate arbitrary https web sites by using DNS spoofing to "forward a connection" to a differe...

  • EPSS 38.59%
  • Published 15.04.2009 08:00:00
  • Last modified 09.04.2025 00:30:58

Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008; and WinINet in Microsoft Internet Explorer 5.01 SP4, 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on...

  • EPSS 42.57%
  • Published 01.04.2009 18:00:00
  • Last modified 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in (1) unlzh.c and (2) unpack.c in the gzip libraries in Microsoft Windows Server 2008, Windows Services for UNIX 3.0 and 3.5, and the Subsystem for UNIX-based Applications (SUA); as used in gunzip, gzip, pack, pc...

  • EPSS 1.16%
  • Published 10.03.2009 20:30:06
  • Last modified 09.04.2025 00:30:58

The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 does not properly handle invalid pointers, which allows local users to gain privileges via an application that triggers use of a crafted pointer, aka "Windows Kernel Invali...

  • EPSS 24.95%
  • Published 10.03.2009 20:30:06
  • Last modified 09.04.2025 00:30:58

The Secure Channel (aka SChannel) authentication component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008, when certificate authentication is used, does not properly validate the client's k...