- EPSS 4.45%
- Veröffentlicht 11.09.2020 17:15:18
- Zuletzt bearbeitet 23.02.2026 18:23:07
<p>A security feature bypass vulnerability exists in SQL Server Reporting Services (SSRS) when the server improperly validates attachments uploaded to reports. An attacker who successfully exploited this vulnerability could upload file types that wer...
CVE-2012-2552
- EPSS 44.36%
- Veröffentlicht 09.10.2012 21:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Cross-site scripting (XSS) vulnerability in the SQL Server Report Manager in Microsoft SQL Server 2000 Reporting Services SP2 and SQL Server 2005 SP4, 2008 SP2 and SP3, 2008 R2 SP1, and 2012 allows remote attackers to inject arbitrary web script or H...
CVE-2009-2500
- EPSS 53.12%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold and SP...
CVE-2009-2501
- EPSS 54.18%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
Heap-based buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 G...
CVE-2009-2502
- EPSS 43.69%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
Buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold and SP3...
CVE-2009-2503
- EPSS 37.62%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Windows Server 2003 SP2, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold a...
CVE-2009-2504
- EPSS 41.38%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple integer overflows in unspecified APIs in GDI+ in Microsoft .NET Framework 1.1 SP1, .NET Framework 2.0 SP1 and SP2, Windows XP SP2 and SP3, Windows Server 2003 SP2, Vista Gold and SP1, Server 2008 Gold, Office XP SP3, Office 2003 SP3, 2007 Mi...
CVE-2009-2528
- EPSS 33.96%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
GDI+ in Microsoft Office XP SP3 does not properly handle malformed objects in Office Art Property Tables, which allows remote attackers to execute arbitrary code via a crafted Office document that triggers memory corruption, aka "Memory Corruption Vu...
CVE-2009-3126
- EPSS 44.63%
- Veröffentlicht 14.10.2009 10:30:01
- Zuletzt bearbeitet 23.04.2026 00:35:47
Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold and SP...
CVE-2008-3012
- EPSS 68.4%
- Veröffentlicht 11.09.2008 01:11:47
- Zuletzt bearbeitet 23.04.2026 00:35:47
gdiplus.dll in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, Server 2008, Office XP SP3, Office 2003 SP2 and SP3, 2007 Microsoft Office System Gold and SP1, Visio 2002 SP2, PowerPoint ...