CVE-2005-3644
- EPSS 65.06%
- Veröffentlicht 17.11.2005 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
PNP_GetDeviceList (upnp_getdevicelist) in UPnP for Microsoft Windows 2000 SP4 and earlier, and possibly Windows XP SP1 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a DCE RPC request that specifies a large...
- EPSS 36.98%
- Veröffentlicht 16.11.2005 07:42:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
By default Microsoft Windows XP Home Edition installs with a blank password for the Administrator account, which allows remote attackers to gain control of the computer.
CVE-2005-2117
- EPSS 62.88%
- Veröffentlicht 21.10.2005 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.
CVE-2005-2118
- EPSS 69.09%
- Veröffentlicht 21.10.2005 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote user-assisted attackers to execute arbitrary commands via a crafted shortcut (.lnk) file with long font properties that lead to a buffer overflow when the use...
- EPSS 76.25%
- Veröffentlicht 21.10.2005 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Serve...
CVE-2005-2126
- EPSS 65.83%
- Veröffentlicht 21.10.2005 18:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The FTP client in Windows XP SP1 and Server 2003, and Internet Explorer 6 SP1 on Windows 2000 SP4, when "Enable Folder View for FTP Sites" is enabled and the user manually initiates a file transfer, allows user-assisted, remote FTP servers to overwri...
CVE-2005-1985
- EPSS 66.67%
- Veröffentlicht 13.10.2005 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Client Service for NetWare (CSNW) on Microsoft Windows 2000 SP4, XP SP1 and Sp2, and Server 2003 SP1 and earlier, allows remote attackers to execute arbitrary code due to an "unchecked buffer" when processing certain crafted network messages.
CVE-2005-1987
- EPSS 59.29%
- Veröffentlicht 13.10.2005 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Collaboration Data Objects (CDO), as used in Microsoft Windows and Microsoft Exchange Server, allows remote attackers to execute arbitrary code when CDOSYS or CDOEX processes an e-mail message with a large header name, as demonstra...
CVE-2005-2120
- EPSS 76.2%
- Veröffentlicht 13.10.2005 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Stack-based buffer overflow in the Plug and Play (PnP) service (UMPNPMGR.DLL) in Microsoft Windows 2000 SP4, and XP SP1 and SP2, allows remote or local authenticated attackers to execute arbitrary code via a large number of "\" (backslash) characters...
CVE-2005-1978
- EPSS 53.56%
- Veröffentlicht 12.10.2005 13:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
COM+ in Microsoft Windows does not properly "create and use memory structures," which allows local users or remote attackers to execute arbitrary code.