Microsoft

Windows Server 2008

3466 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 12.82%
  • Veröffentlicht 15.04.2009 08:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, and Vista Gold allows remote web servers to impersonate arbitrary https web sites by using DNS spoofing to "forward a connection" to a differe...

  • EPSS 38.59%
  • Veröffentlicht 15.04.2009 08:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008; and WinINet in Microsoft Internet Explorer 5.01 SP4, 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on...

  • EPSS 42.57%
  • Veröffentlicht 01.04.2009 18:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in (1) unlzh.c and (2) unpack.c in the gzip libraries in Microsoft Windows Server 2008, Windows Services for UNIX 3.0 and 3.5, and the Subsystem for UNIX-based Applications (SUA); as used in gunzip, gzip, pack, pc...

  • EPSS 52.48%
  • Veröffentlicht 11.03.2009 14:19:15
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when dynamic updates are enabled, does not restrict registration of the "wpad" hostname, which allows remote authenticated users to hijack the Web Proxy Auto-...

  • EPSS 60.45%
  • Veröffentlicht 11.03.2009 14:19:15
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The WINS server in Microsoft Windows 2000 SP4 and Server 2003 SP1 and SP2 does not restrict registration of the (1) "wpad" and (2) "isatap" NetBIOS names, which allows remote authenticated users to hijack the Web Proxy Auto-Discovery (WPAD) and Intra...

  • EPSS 55.54%
  • Veröffentlicht 11.03.2009 14:19:15
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The DNS Resolver Cache Service (aka DNSCache) in Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008, when dynamic updates are enabled, does not reuse cached DNS responses in all applicable situations, which mak...

  • EPSS 69.03%
  • Veröffentlicht 11.03.2009 14:19:15
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The DNS Resolver Cache Service (aka DNSCache) in Windows DNS Server in Microsoft Windows 2000 SP4, Server 2003 SP1 and SP2, and Server 2008 does not properly cache crafted DNS responses, which makes it easier for remote attackers to predict transacti...

  • EPSS 1.16%
  • Veröffentlicht 10.03.2009 20:30:06
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 does not properly handle invalid pointers, which allows local users to gain privileges via an application that triggers use of a crafted pointer, aka "Windows Kernel Invali...

  • EPSS 24.95%
  • Veröffentlicht 10.03.2009 20:30:06
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Secure Channel (aka SChannel) authentication component in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008, when certificate authentication is used, does not properly validate the client's k...

  • EPSS 1.04%
  • Veröffentlicht 10.03.2009 20:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 does not properly validate handles, which allows local users to gain privileges via a crafted application that triggers unspecified...