Microsoft

.Net Framework

177 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 15.93%
  • Published 30.03.2006 01:06:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in calloc.c in the Microsoft Windows XP SP2 ntdll.dll system library, when used by the ILDASM disassembler in the Microsoft .NET 1.0 and 1.1 SDK, might allow user-assisted attackers to execute arbitrary code via a crafted .dll file wi...

Exploit
  • EPSS 29%
  • Published 30.03.2006 01:06:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the ILASM assembler in the Microsoft .NET 1.0 and 1.1 Framework might allow user-assisted attackers to execute arbitrary code via a .il file that calls a function with a long name.

Exploit
  • EPSS 44.57%
  • Published 19.08.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for...

  • EPSS 8.19%
  • Published 14.03.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Multiple cross-site scripting (XSS) vulnerabilities in the Mono 1.0.5 implementation of ASP.NET (.Net) allow remote attackers to inject arbitrary HTML or web script via Unicode representations for ASCII fullwidth characters that are converted to norm...

  • EPSS 76.69%
  • Published 28.09.2004 04:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to...

  • EPSS 19.26%
  • Published 26.07.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in ASP.NET Worker Process allows remote attackers to cause a denial of service (restart) and possibly execute arbitrary code via a routine that processes cookies while in StateServer mode.

  • EPSS 34.23%
  • Published 26.07.2002 04:00:00
  • Last modified 03.04.2025 01:03:51

orderdetails.aspx, as made available to Microsoft .NET developers as example code and demonstrated on www.ibuyspystore.com, allows remote attackers to view the orders of other users by modifying the OrderID parameter.