Microsoft

Windows Xp

739 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 88.43%
  • Veröffentlicht 31.10.2006 01:07:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Microsoft Windows NAT Helper Components (ipnathlp.dll) on Windows XP SP2, when Internet Connection Sharing is enabled, allows remote attackers to cause a denial of service (svchost.exe crash) via a malformed DNS query, which results in a null pointer...

  • EPSS 66.64%
  • Veröffentlicht 10.10.2006 22:07:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Argument injection vulnerability in the Windows Object Packager (packager.exe) in Microsoft Windows XP SP1 and SP2 and Server 2003 SP1 and earlier allows remote user-assisted attackers to execute arbitrary commands via a crafted file with a "/" (slas...

  • EPSS 72.33%
  • Veröffentlicht 10.10.2006 22:07:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in the Server service in Microsoft Windows 2000 SP4, Server 2003 SP1 and earlier, and XP SP2 and earlier allows remote attackers to execute arbitrary code via a crafted packet, aka "SMB Rename Vulnerability."

  • EPSS 76.87%
  • Veröffentlicht 12.09.2006 23:07:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Cross-site scripting (XSS) vulnerability in the Indexing Service in Microsoft Windows 2000, XP, and Server 2003, when the Encoding option is set to Auto Select, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL, w...

  • EPSS 51.45%
  • Veröffentlicht 12.09.2006 23:07:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Unspecified vulnerability in Pragmatic General Multicast (PGM) in Microsoft Windows XP SP2 and earlier allows remote attackers to execute arbitrary code via a crafted multicast message.

  • EPSS 52.48%
  • Veröffentlicht 12.09.2006 23:07:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060912, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a l...

Exploit
  • EPSS 25.16%
  • Veröffentlicht 10.08.2006 01:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Sign extension vulnerability in the createBrushIndirect function in the GDI library (gdi32.dll) in Microsoft Windows XP, Server 2003, and possibly other versions, allows user-assisted attackers to cause a denial of service (application crash) via a c...

  • EPSS 22.26%
  • Veröffentlicht 10.08.2006 00:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

The Graphical Device Interface Plus library (gdiplus.dll) in Microsoft Windows XP SP2 allows context-dependent attackers to cause a denial of service (application crash) via certain images that trigger a divide-by-zero error, as demonstrated by a (1)...

  • EPSS 88.79%
  • Veröffentlicht 09.08.2006 01:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Buffer overflow in the Server Service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers, including anonymous users, to execute arbitrary code via a crafted RPC message, a different vulnerability than CVE-2006-...

  • EPSS 77.43%
  • Veröffentlicht 09.08.2006 01:04:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Buffer overflow in the Winsock API in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via unknown vectors, aka "Winsock Hostname Vulnerability."