CVE-2009-2498
- EPSS 36.52%
- Published 08.09.2009 22:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Format Runtime 9.0, 9.5, and 11 and Windows Media Services 9.1 and 2008 do not properly parse malformed headers in Advanced Systems Format (ASF) files, which allows remote attackers to execute arbitrary code via a crafted (1) ...
CVE-2009-2499
- EPSS 37.78%
- Published 08.09.2009 22:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Windows Media Format Runtime 9.0, 9.5, and 11; and Microsoft Media Foundation on Windows Vista Gold, SP1, and SP2 and Server 2008; allows remote attackers to execute arbitrary code via an MP3 file with crafted metadata that triggers memory ...
CVE-2009-2519
- EPSS 40.14%
- Published 08.09.2009 22:30:00
- Last modified 09.04.2025 00:30:58
The DHTML Editing Component ActiveX control in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly format HTML markup, which allows remote attackers to execute arbitrary code via a crafted web site that triggers "system ...
- EPSS 19.51%
- Published 12.08.2009 19:30:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in Apple Safari 4 before 4.0.3 allows remote web servers to place an arbitrary web site in the Top Sites view, and possibly conduct phishing attacks, via unknown vectors.
CVE-2009-1133
- EPSS 70.04%
- Published 12.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in Microsoft Remote Desktop Connection (formerly Terminal Services Client) running RDP 5.0 through 6.1 on Windows, and Remote Desktop Connection Client for Mac 2.0, allows remote attackers to execute arbitrary code via unsp...
- EPSS 34.53%
- Published 12.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Double free vulnerability in the Workstation service in Microsoft Windows allows remote authenticated users to gain privileges via a crafted RPC message to a Windows XP SP2 or SP3 or Server 2003 SP2 system, or cause a denial of service via a crafted ...
CVE-2009-1545
- EPSS 60.3%
- Published 12.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in Avifil32.dll in the Windows Media file handling functionality in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows remote attackers to execute arbit...
CVE-2009-1546
- EPSS 65.1%
- Published 12.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Integer overflow in Avifil32.dll in the Windows Media file handling functionality in Microsoft Windows allows remote attackers to execute arbitrary code on a Windows 2000 SP4 system via a crafted AVI file, or cause a denial of service on a Windows XP...
CVE-2009-1922
- EPSS 1.89%
- Published 12.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
The Message Queuing (aka MSMQ) service for Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP2, and Vista Gold does not properly validate unspecified IOCTL request data from user mode before passing this data to kernel mode, which allows local users ...
CVE-2009-1929
- EPSS 72.73%
- Published 12.08.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in the Microsoft Terminal Services Client ActiveX control running RDP 6.1 on Windows XP SP2, Vista SP1 or SP2, or Server 2008 Gold or SP2; or 5.2 or 6.1 on Windows XP SP3; allows remote attackers to execute arbitrary code v...