CVE-2009-1123
- EPSS 4.52%
- Veröffentlicht 10.06.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate changes to unspecified kernel objects, which allows local users to gain privileges via a crafted appli...
CVE-2009-1124
- EPSS 0.81%
- Veröffentlicht 10.06.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate user-mode pointers in unspecified error conditions, which allows local users to gain privileges via a ...
CVE-2009-1125
- EPSS 0.63%
- Veröffentlicht 10.06.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate an argument to an unspecified system call, which allows local users to gain privileges via a crafted a...
CVE-2009-1126
- EPSS 0.71%
- Veröffentlicht 10.06.2009 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly validate the user-mode input associated with the editing of an unspecified desktop parameter, which allows local users to gain privileges via a crafted ap...
CVE-2009-0229
- EPSS 3.11%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Windows Printing Service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 allows local users to read arbitrary files via a crafted separator page, aka "Print Spooler Read File Vulnerabi...
- EPSS 30.18%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Windows Print Spooler in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 allows remote authenticated users to gain privileges via a crafted RPC message that triggers loading of a DLL file...
- EPSS 58.35%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The RPC Marshalling Engine (aka NDR) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly maintain its internal state, which allows remote attackers to overwrite arbitrary mem...
CVE-2009-0078
- EPSS 1.63%
- Veröffentlicht 15.04.2009 08:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Windows Management Instrumentation (WMI) provider in Microsoft Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly implement isolation among a set of distinct processes that (1) all run under the...
CVE-2009-0080
- EPSS 2.15%
- Veröffentlicht 15.04.2009 08:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The ThreadPool class in Windows Vista Gold and SP1, and Server 2008, does not properly implement isolation among a set of distinct processes that (1) all run under the NetworkService account or (2) all run under the LocalService account, which allows...
- EPSS 52.49%
- Veröffentlicht 15.04.2009 08:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer underflow in Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote HTTP servers to execute arbitrary code via crafted parameter values in ...