CVE-2010-0807
- EPSS 62.1%
- Veröffentlicht 31.03.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing a deleted object, leading to memory corruption, aka "HTML Rendering Memory Corruption Vulnerability."
CVE-2010-1098
- EPSS 27.24%
- Veröffentlicht 24.03.2010 22:44:14
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ANI parser in Microsoft Windows before 7 on the x86 platform, as used in Internet Explorer and other applications, allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted biClrUsed value in the BITMAPINFO h...
CVE-2010-0265
- EPSS 64.1%
- Veröffentlicht 10.03.2010 22:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in Microsoft Windows Movie Maker 2.1, 2.6, and 6.0, and Microsoft Producer 2003, allows remote attackers to execute arbitrary code via a crafted project (.MSWMM) file, aka "Movie Maker and Producer Buffer Overflow Vulnerability."
CVE-2010-0806
- EPSS 90.86%
- Veröffentlicht 10.03.2010 22:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the Peer Objects component (aka iepeers.dll) in Microsoft Internet Explorer 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via vectors involving access to an invalid pointer after the deletion of an ...
CVE-2010-0719
- EPSS 0.38%
- Veröffentlicht 26.02.2010 19:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
An unspecified API in Microsoft Windows 2000, Windows XP, Windows Server 2003, Windows Vista, Windows Server 2008, and Windows 7 does not validate arguments, which allows local users to cause a denial of service (system crash) via a crafted applicati...
CVE-2010-0022
- EPSS 75%
- Veröffentlicht 10.02.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate the share a...
- EPSS 71.51%
- Veröffentlicht 10.02.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The SMB implementation in the Server service in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not use a sufficient source of en...
CVE-2010-0233
- EPSS 0.38%
- Veröffentlicht 10.02.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in the kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows local users to gain privileges via a crafted application, aka "Windows Kernel Double...
- EPSS 66.84%
- Veröffentlicht 10.02.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when IPv6 is enabled, does not properly perform bounds checking on ICMPv6 Router Advertisement packets, which allows remote attackers to execute arb...
- EPSS 55.48%
- Veröffentlicht 10.02.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The TCP/IP implementation in Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2, when a custom network driver is used, does not properly handle local fragmentation of Encapsulating Security Payload (ESP) over UDP packets, which a...