CVE-2006-0020
- EPSS 49.91%
- Veröffentlicht 10.01.2006 21:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2 on Windows Millennium, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute co...
CVE-2006-0143
- EPSS 74.76%
- Veröffentlicht 09.01.2006 20:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Windows Graphics Rendering Engine (GRE) allows remote attackers to corrupt memory and cause a denial of service (crash) via a WMF file containing (1) ExtCreateRegion or (2) ExtEscape function calls with arguments with inconsistent lengths.
CVE-2005-4696
- EPSS 5.31%
- Veröffentlicht 31.12.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Microsoft Wireless Zero Configuration system (WZCS) stores WEP keys and pair-wise Master Keys (PMK) of the WPA pre-shared key in plaintext in memory of the explorer process, which allows attackers with access to process memory to steal the keys a...
CVE-2005-4697
- EPSS 1.26%
- Veröffentlicht 31.12.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Microsoft Wireless Zero Configuration system (WZCS) allows local users to access WEP keys and pair-wise Master Keys (PMK) of the WPA pre-shared key via certain calls to the WZCQueryInterface API function in wzcsapi.dll.
- EPSS 19.89%
- Veröffentlicht 31.12.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Internet Explorer 6.0 on Windows NT 4.0 SP6a, Windows 2000 SP4, Windows XP SP1, Windows XP SP2, and Windows Server 2003 SP1 allows remote attackers to cause a denial of service (client crash) via a certain combination of a malformed HTML fi...
CVE-2005-4560
- EPSS 90.52%
- Veröffentlicht 28.12.2005 19:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) format image with a crafted SETABORTPROC GDI Escape function call, related to the Windows P...
CVE-2005-4269
- EPSS 15.93%
- Veröffentlicht 15.12.2005 20:11:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
mshtml.dll in Microsoft Windows XP, Server 2003, and Internet Explorer 6.0 SP1 allows attackers to cause a denial of service (access violation) by causing mshtml.dll to process button-focus events at the same time that a document is reloading, as see...
CVE-2005-3981
- EPSS 0.67%
- Veröffentlicht 04.12.2005 11:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
NOTE: this issue has been disputed by third parties. Microsoft Windows XP, 2000, and 2003 allows local users to kill a writable process by using the CreateRemoteThread function with certain arguments on a process that has been opened using the OpenP...
CVE-2005-2123
- EPSS 82.62%
- Veröffentlicht 29.11.2005 21:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allow remote attackers to execute arbitrary code via crafted Windows Metafile (WMF) and Enhanced Metafile (EMF) format im...
CVE-2005-2124
- EPSS 87.61%
- Veröffentlicht 29.11.2005 21:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to "An unchecked buffer" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a c...