- EPSS 30.26%
- Veröffentlicht 31.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Remote Desktop client in Windows XP sends the most recent user account name in cleartext, which could allow remote attackers to obtain terminal server user account names via sniffing.
CVE-2001-0876
- EPSS 78.7%
- Veröffentlicht 20.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to execute arbitrary code via a NOTIFY directive with a long Location URL.
- EPSS 52.8%
- Veröffentlicht 20.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Universal Plug and Play (UPnP) on Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service via (1) a spoofed SSDP advertisement that causes the client to connect to a service on another machine that generates a large amount o...
- EPSS 19.48%
- Veröffentlicht 20.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Format string vulnerability in the C runtime functions in SQL Server 7.0 and 2000 allows attackers to cause a denial of service.
CVE-2001-1200
- EPSS 0.25%
- Veröffentlicht 17.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Microsoft Windows XP allows local users to bypass a locked screen and run certain programs that are associated with Hot Keys.
- EPSS 19.07%
- Veröffentlicht 06.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Universal Plug and Play (UPnP) in Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service (memory consumption or crash) via a malformed UPnP request.
CVE-2001-0860
- EPSS 27.17%
- Veröffentlicht 06.12.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Terminal Services Manager MMC in Windows 2000 and XP trusts the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through a Network ...
CVE-2001-0909
- EPSS 20.75%
- Veröffentlicht 21.11.2001 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote attackers to execute arbitrary code via a long hcp: URL.
CVE-2000-1218
- EPSS 1.64%
- Veröffentlicht 14.04.2000 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers ...