CVE-2004-0123
- EPSS 63.84%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Double free vulnerability in the ASN.1 library as used in Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service and possibly execute arbitrary code.
CVE-2004-0124
- EPSS 52.14%
- Veröffentlicht 01.06.2004 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The DCOM RPC interface for Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause network communications via an "alter context" call that contains additional data, aka the "Object Identity Vulnerability."
CVE-2003-0818
- EPSS 89.65%
- Veröffentlicht 03.03.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries on Windows NT 4.0, 2000, and XP, allow remote attackers to execute arbitrary code via ASN.1 BER encod...
CVE-2003-0825
- EPSS 38.66%
- Veröffentlicht 03.03.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Windows Internet Naming Service (WINS) for Microsoft Windows Server 2003, and possibly Windows NT and Server 2000, does not properly validate the length of certain packets, which allows attackers to cause a denial of service and possibly execute ...
CVE-2003-0659
- EPSS 4.13%
- Veröffentlicht 17.11.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.
CVE-2003-0660
- EPSS 38.54%
- Veröffentlicht 17.11.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Authenticode capability in Microsoft Windows NT through Server 2003 does not prompt the user to download and install ActiveX controls when the system is low on memory, which could allow remote attackers to execute arbitrary code without user appr...
CVE-2003-0711
- EPSS 56.87%
- Veröffentlicht 17.11.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Stack-based buffer overflow in the PCHealth system in the Help and Support Center function in Windows XP and Windows Server 2003 allows remote attackers to execute arbitrary code via a long query in an HCP URL.
CVE-2003-0717
- EPSS 81.29%
- Veröffentlicht 17.11.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers to execute arbitrary code via a buffer overflow attack.
- EPSS 31.32%
- Veröffentlicht 17.11.2003 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Directory traversal vulnerability in the "Shell Folders" capability in Microsoft Windows Server 2003 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a "shell:" link.
- EPSS 33.6%
- Veröffentlicht 20.10.2003 04:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The NetBT Name Service (NBNS) for NetBIOS in Windows NT 4.0, 2000, XP, and Server 2003 may include random memory in a response to a NBNS query, which could allow remote attackers to obtain sensitive information.