Microsoft

Windows-nt

22 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 75.59%
  • Veröffentlicht 11.09.2008 01:11:47
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 20...

  • EPSS 70.56%
  • Veröffentlicht 11.09.2008 01:11:47
  • Zuletzt bearbeitet 09.04.2025 00:30:58

gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint ...

  • EPSS 81.1%
  • Veröffentlicht 11.09.2008 01:11:47
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Stack-based buffer overflow in the WMEncProfileManager ActiveX control in wmex.dll in Microsoft Windows Media Encoder 9 Series allows remote attackers to execute arbitrary code via a long first argument to the GetDetailsString method, aka "Windows Me...

  • EPSS 82.84%
  • Veröffentlicht 11.09.2008 01:01:19
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerP...

  • EPSS 54.93%
  • Veröffentlicht 13.08.2008 12:42:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate per-user subscriptions, which allows remote authenticated users to execute arbitrary code via a cr...

  • EPSS 58.67%
  • Veröffentlicht 13.08.2008 12:42:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a crafted event subscription req...

  • EPSS 53.58%
  • Veröffentlicht 13.08.2008 00:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Microsoft Windows Vista through SP1 and Server 2008 do not properly import the default IPsec policy from a Windows Server 2003 domain to a Windows Server 2008 domain, which prevents IPsec rules from being enforced and allows remote attackers to bypas...

  • EPSS 50.69%
  • Veröffentlicht 08.07.2008 23:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Windows Explorer in Microsoft Windows Vista up to SP1, and Server 2008, allows user-assisted remote attackers to execute arbitrary code via crafted saved-search (.search-ms) files that are not properly handled when saving, aka "Windows Saved Search V...

  • EPSS 1.3%
  • Veröffentlicht 12.06.2008 02:32:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Bluetooth stack in Microsoft Windows XP SP2 and SP3, and Vista Gold and SP1, allows physically proximate attackers to execute arbitrary code via a large series of Service Discovery Protocol (SDP) packets.

  • EPSS 57.92%
  • Veröffentlicht 12.06.2008 02:32:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Active Directory on Microsoft Windows 2000 Server SP4, XP Professional SP2 and SP3, Server 2003 SP1 and SP2, and Server 2008 allows remote authenticated users to cause a denial of service (system hang or reboot) via a crafted LDAP request.