CVE-2010-3944
- EPSS 1.01%
- Veröffentlicht 16.12.2010 19:33:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate user-mode input, which allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Vulnerability."
CVE-2010-4398
- EPSS 12.71%
- Veröffentlicht 06.12.2010 13:44:54
- Zuletzt bearbeitet 11.04.2025 00:51:21
Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain ...
CVE-2010-4182
- EPSS 34.26%
- Veröffentlicht 04.11.2010 19:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Untrusted search path vulnerability in the Data Access Objects (DAO) library (dao360.dll) in Microsoft Windows XP Professional SP3, Windows Server 2003 R2 Enterprise Edition SP3, Windows Vista Business SP1, and Windows 7 Professional allows local use...
CVE-2010-3227
- EPSS 35.49%
- Veröffentlicht 26.10.2010 22:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Stack-based buffer overflow in the UpdateFrameTitleForDocument method in the CFrameWnd class in mfc42.dll in the Microsoft Foundation Class (MFC) Library in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows...
CVE-2010-3225
- EPSS 44.15%
- Veröffentlicht 13.10.2010 19:00:45
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the Media Player Network Sharing Service in Microsoft Windows Vista SP1 and SP2 and Windows 7 allows remote attackers to execute arbitrary code via a crafted Real Time Streaming Protocol (RTSP) packet, aka "RTSP Use Af...
CVE-2010-3229
- EPSS 64.34%
- Veröffentlicht 13.10.2010 19:00:45
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Secure Channel (aka SChannel) security package in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when IIS 7.x is used, does not properly process client certificates during SSL and TLS handshakes, which ...
CVE-2010-2744
- EPSS 1.44%
- Veröffentlicht 13.10.2010 19:00:44
- Zuletzt bearbeitet 11.04.2025 00:51:21
The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not properly manage a window class, which allows local users to gain privileges b...
CVE-2010-2746
- EPSS 73.72%
- Veröffentlicht 13.10.2010 19:00:44
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in Comctl32.dll (aka the common control library) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when a third-party SVG viewer i...
CVE-2010-1883
- EPSS 65.6%
- Veröffentlicht 13.10.2010 19:00:18
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the Embedded OpenType (EOT) Font Engine in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote attackers to execute arbitrary cod...
CVE-2010-2729
- EPSS 83.06%
- Veröffentlicht 15.09.2010 19:00:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Print Spooler service in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7, when printer sharing is enabled, does not properly validate spooler access permis...