Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Microsoft Windows Server 2003 Standard Edition
This vulnerability report for Microsoft Windows Server 2003 Standard Edition contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Microsoft Windows Server 2003 Standard Edition then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Microsoft

Product Link View Here (Link to external site)

Affected By 220 Secunia advisories
299 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 6% (14 of 220 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Microsoft Windows Server 2003 Standard Edition, with all vendor patches applied, is rated Highly critical .




220 Secunia Advisories in 2003-2009
Secunia has issued a total of 220 Secunia advisories in 2003-2009 for Microsoft Windows Server 2003 Standard Edition. Currently, 6% (14 out of 220) are marked as unpatched with the most severe being rated Highly critical

More information about the specific Secunia advisories affecting Microsoft Windows Server 2003 Standard Edition can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Microsoft WordPad / Office Text Converters Integer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 39 in 2009. 2,418 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37580
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Local Security Authority Subsystem Denial of Service
Vendor Patch. Secunia Advisory 2 of 39 in 2009. 637 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37524
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Indeo Codec Multiple Vulnerabilities
Unpatched. Secunia Advisory 3 of 39 in 2009. 2,107 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37592
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows MS-CHAP Authentication Bypass
Vendor Patch. Secunia Advisory 4 of 39 in 2009. 651 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37543
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security restrictions. [Read More]


Windows Active Directory Federation Services Two Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 39 in 2009. 641 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37542
Solution Status:
Vendor Patch
Criticality:
Impact:
Hijacking
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to impersonate other users or to compromise a vulnerable system. [Read More]


Microsoft Windows Win32k Kernel-Mode Driver Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 6 of 39 in 2009. 6,194 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37318
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory Denial of Service
Vendor Patch. Secunia Advisory 7 of 39 in 2009. 1,083 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37304
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Products GDI+ Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 8 of 39 in 2009. 10,628 views.
Release Date:
2009-10-14
Secunia Advisory ID:
SA37007
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in various Microsoft products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Privilege Escalation and Denial of Service
Vendor Patch. Secunia Advisory 9 of 39 in 2009. 1,178 views.
Release Date:
2009-10-14
Secunia Advisory ID:
SA37001
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or to potentially gain escalated privileges. [Read More]


Microsoft Local Security Authority Subsystem Denial of Service
Vendor Patch. Secunia Advisory 10 of 39 in 2009. 1,582 views.
Release Date:
2009-10-14
Secunia Advisory ID:
SA37002
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows CryptoAPI Two Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 11 of 39 in 2009. 1,176 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36999
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks. [Read More]


Microsoft Windows ActiveX Controls ATL "OleLoadFromStream()" Vulnerability
Vendor Patch. Secunia Advisory 12 of 39 in 2009. 2,413 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36997
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]


Microsoft Windows Media Runtime Code Execution Vulnerability
Vendor Patch. Secunia Advisory 13 of 39 in 2009. 1,265 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36938
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Indexing Service ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 14 of 39 in 2009. 1,045 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA37000
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a user's system. [Read More]


Microsoft JScript Scripting Engine Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 15 of 39 in 2009. 1,561 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36551
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Server 2003 TCP/IP Window Size Denial of Service Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 39 in 2009. 1,152 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36602
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows Server 2003, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Media Format Two Code Execution Vulnerabilities
Vendor Patch. Secunia Advisory 17 of 39 in 2009. 3,017 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36596
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows Media Format, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows DHTML Editing ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 18 of 39 in 2009. 1,455 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36592
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Embedded OpenType Font Denial of Service
Unpatched. Secunia Advisory 19 of 39 in 2009. 1,680 views.
Release Date:
2009-08-12
Secunia Advisory ID:
SA36250
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
webDEViL has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people and by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Various Components ATL Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 39 in 2009. 8,359 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36187
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in various Windows components, which can be exploited by malicious people to bypass security features or compromise a user's system. [Read More]


Microsoft Remote Desktop Connection Two Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 39 in 2009. 6,185 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36229
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows and Microsoft Remote Desktop Connection Client for Mac, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Telnet NTLM Credential Reflection Vulnerability
Vendor Patch. Secunia Advisory 22 of 39 in 2009. 1,708 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36222
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows AVI Media File Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 39 in 2009. 1,654 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36206
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Workstation Service Memory Corruption
Vendor Patch. Secunia Advisory 24 of 39 in 2009. 1,523 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36220
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows Message Queuing Service Privilege Escalation
Vendor Patch. Secunia Advisory 25 of 39 in 2009. 1,632 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36214
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows WINS Service Two Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 39 in 2009. 1,642 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36213
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Embedded OpenType Font Engine Two Vulnerabilities
Vendor Patch. Secunia Advisory 27 of 39 in 2009. 7,042 views.
Release Date:
2009-07-14
Secunia Advisory ID:
SA35773
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft DirectShow Streaming Video ActiveX Control Vulnerabilities
Vendor Patch. Secunia Advisory 28 of 39 in 2009. 14,846 views.
Release Date:
2009-07-06
Secunia Advisory ID:
SA35683
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Print Spooler Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 29 of 39 in 2009. 3,216 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35365
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
System access
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to disclose sensitive information, and by malicious users and malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Kernel Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 39 in 2009. 2,385 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35372
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Active Directory Two Vulnerabilities
Vendor Patch. Secunia Advisory 31 of 39 in 2009. 2,186 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35355
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows RPC Marshalling Engine Vulnerability
Vendor Patch. Secunia Advisory 32 of 39 in 2009. 4,387 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35373
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]


Microsoft Windows "SystemParametersInfo()" Privilege Escalation
Vendor Patch. Secunia Advisory 33 of 39 in 2009. 2,590 views.
Release Date:
2009-06-03
Secunia Advisory ID:
SA35323
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft DirectShow QuickTime Parsing Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 34 of 39 in 2009. 8,398 views.
Release Date:
2009-05-29
Secunia Advisory ID:
SA35268
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft DirectShow MJPEG Decompression Vulnerability
Vendor Patch. Secunia Advisory 35 of 39 in 2009. 3,831 views.
Release Date:
2009-04-14
Secunia Advisory ID:
SA34665
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft DirectX, which can be exploited by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows HTTP Services Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 36 of 39 in 2009. 7,905 views.
Release Date:
2009-04-14
Secunia Advisory ID:
SA34677
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks or compromise a user's system. [Read More]


Microsoft Windows DNS / WINS Multiple Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 37 of 39 in 2009. 3,509 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34217
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to poison a DNS cache and conduct spoofing attacks. [Read More]


Microsoft Windows SChannel Authentication Bypass
Vendor Patch. Secunia Advisory 38 of 39 in 2009. 6,588 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34215
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security mechanisms. [Read More]


Microsoft Windows Multiple Kernel Vulnerabilities
Vendor Patch. Secunia Advisory 39 of 39 in 2009. 5,464 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34117
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows WordPad / Office Text Converters Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 34 in 2008. 10,040 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA32997
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows GDI Image Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 34 in 2008. 9,053 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA33020
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]


Microsoft SQL Server "sp_replwritetovarbin()" Buffer Overflow
Vendor Patch. Secunia Advisory 3 of 34 in 2008. 11,857 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA33034
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
From local network
Short Description:
Bernhard Mueller has discovered a vulnerability in Microsoft SQL Server, which can be exploited by malicious users to gain escalated privileges. [Read More]


Microsoft Windows SMB Authentication Credential Replay Vulnerability
Vendor Patch. Secunia Advisory 4 of 34 in 2008. 8,175 views.
Release Date:
2008-11-11
Secunia Advisory ID:
SA32633
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Spoofing
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security features. [Read More]


Microsoft Windows Path Canonicalisation Vulnerability
Vendor Patch. Secunia Advisory 5 of 34 in 2008. 23,191 views.
Release Date:
2008-10-23
Secunia Advisory ID:
SA32326
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Virtual Address Descriptor Privilege Escalation
Vendor Patch. Secunia Advisory 6 of 34 in 2008. 3,916 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32251
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows SMB Buffer Underflow Vulnerability
Vendor Patch. Secunia Advisory 7 of 34 in 2008. 4,850 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32249
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows IIS IPP Service Integer Overflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 34 in 2008. 6,798 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32248
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows Ancillary Function Driver Privilege Escalation
Vendor Patch. Secunia Advisory 9 of 34 in 2008. 4,265 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32261
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 34 in 2008. 4,161 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32247
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Microsoft Windows SMB Packet Handling Vulnerabilities
Vendor Patch. Secunia Advisory 11 of 34 in 2008. 9,630 views.
Release Date:
2008-09-16
Secunia Advisory ID:
SA31883
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows "IopfCompleteRequest" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 12 of 34 in 2008. 6,651 views.
Release Date:
2008-09-10
Secunia Advisory ID:
SA31824
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Ruben Santamarta has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Products GDI+ Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 34 in 2008. 13,552 views.
Release Date:
2008-09-09
Secunia Advisory ID:
SA31675
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in various Microsoft products, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Event System Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 14 of 34 in 2008. 6,038 views.
Release Date:
2008-08-12
Secunia Advisory ID:
SA31417
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Color Management System Buffer Overflow
Vendor Patch. Secunia Advisory 15 of 34 in 2008. 8,253 views.
Release Date:
2008-08-12
Secunia Advisory ID:
SA31385
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft SQL Server and MSDE Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 34 in 2008. 10,028 views.
Release Date:
2008-07-08
Secunia Advisory ID:
SA30970
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
Where:
From local network
Short Description:
Four vulnerabilities have been reported in Microsoft SQL Server, which can be exploited by malicious users to gain escalated privileges. [Read More]


Microsoft Windows DNS Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 17 of 34 in 2008. 8,392 views.
Release Date:
2008-07-08
Secunia Advisory ID:
SA30925
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft Windows Pragmatic General Multicast Denial of Service
Vendor Patch. Secunia Advisory 18 of 34 in 2008. 6,655 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30587
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Speech Recognition Security Issue
Vendor Patch. Secunia Advisory 19 of 34 in 2008. 6,836 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30578
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A security issue has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory LDAP Request Processing Denial of Service
Vendor Patch. Secunia Advisory 20 of 34 in 2008. 8,311 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30586
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people or malicious users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows WINS Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 21 of 34 in 2008. 6,171 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30584
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft DirectX MJPEG/SAMI File Processing Vulnerabilities
Vendor Patch. Secunia Advisory 22 of 34 in 2008. 8,408 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30579
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 34 in 2008. 14,835 views.
Release Date:
2008-04-18
Secunia Advisory ID:
SA29867
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows DNS Client Predictable Transaction ID Vulnerability
Vendor Patch. Secunia Advisory 24 of 34 in 2008. 8,254 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29696
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 25 of 34 in 2008. 8,561 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29720
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft VBScript/JScript Script Decoding Buffer Overflow
Vendor Patch. Secunia Advisory 26 of 34 in 2008. 9,399 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29712
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows hxvz.dll ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 27 of 34 in 2008. 9,253 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29714
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows GDI Image Parsing Buffer Overflows
Vendor Patch. Secunia Advisory 28 of 34 in 2008. 8,987 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29704
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows "NoDriveTypeAutoRun" Security Issue
Vendor Patch. Secunia Advisory 29 of 34 in 2008. 15,091 views.
Release Date:
2008-03-21
Secunia Advisory ID:
SA29458
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
Local system
Short Description:
CERT/CC has reported a security issue in Windows, which can be exploited by malicious people to bypass certain security settings. [Read More]


Microsoft WebDAV Mini-Redirector Pathname Buffer Overflow
Vendor Patch. Secunia Advisory 30 of 34 in 2008. 9,858 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28894
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows OLE Automation Memory Corruption
Vendor Patch. Secunia Advisory 31 of 34 in 2008. 10,189 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28902
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Active Directory Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 32 of 34 in 2008. 8,310 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28764
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users and malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows LSASS Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 33 of 34 in 2008. 11,680 views.
Release Date:
2008-01-08
Secunia Advisory ID:
SA28341
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows TCP/IP Implementation Vulnerabilities
Vendor Patch. Secunia Advisory 34 of 34 in 2008. 18,375 views.
Release Date:
2008-01-08
Secunia Advisory ID:
SA28297
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Windows Media Format Runtime ASF Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 32 in 2007. 14,386 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28034
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
IBM X-Force has reported four vulnerabilities in Windows Media Format Runtime / Windows Media Services, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft DirectX SAMI/WAV/AVI File Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 32 in 2007. 13,628 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Web Proxy Auto-Discovery Feature Security Issue
Vendor Workaround. Secunia Advisory 3 of 32 in 2007. 18,066 views.
Release Date:
2007-12-04
Secunia Advisory ID:
SA27901
Solution Status:
Vendor Workaround
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
Where:
From remote
Short Description:
A security issue has been reported in Microsoft's Web Proxy Auto-Discovery (WPAD) feature, which can be exploited by malicious people to conduct man-in-the-middle (MITM) attacks. [Read More]


Microsoft Windows DNS Service Cache Poisoning Vulnerability
Vendor Patch. Secunia Advisory 4 of 32 in 2007. 15,569 views.
Release Date:
2007-11-13
Secunia Advisory ID:
SA27584
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Macrovision SafeDisc secdrv.sys Privilege Escalation
Vendor Patch. Secunia Advisory 5 of 32 in 2007. 13,504 views.
Release Date:
2007-10-23
Secunia Advisory ID:
SA27285
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Macrovision SafeDisc, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows NNTP Response Handling Buffer Overflow
Vendor Patch. Secunia Advisory 6 of 32 in 2007. 14,132 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27112
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
VeriSign iDefense Labs has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kodak Image Viewer Code Execution
Vendor Patch. Secunia Advisory 7 of 32 in 2007. 15,413 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27092
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows RPC Authentication Denial of Service
Vendor Patch. Secunia Advisory 8 of 32 in 2007. 11,714 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27134
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Services for UNIX Privilege Escalation
Vendor Patch. Secunia Advisory 9 of 32 in 2007. 11,100 views.
Release Date:
2007-09-11
Secunia Advisory ID:
SA26757
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows Services for UNIX, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Vector Markup Language Buffer Overflow
Vendor Patch. Secunia Advisory 10 of 32 in 2007. 14,339 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26409
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Graphics Rendering Engine Image Handling Vulnerability
Vendor Patch. Secunia Advisory 11 of 32 in 2007. 11,625 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26423
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows OLE Automation "substringData()" Integer Overflow
Vendor Patch. Secunia Advisory 12 of 32 in 2007. 12,821 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26449
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows URI Handling Command Execution Vulnerability
Vendor Patch. Secunia Advisory 13 of 32 in 2007. 68,002 views.
Release Date:
2007-07-26
Secunia Advisory ID:
SA26201
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Active Directory Two Vulnerabilities
Vendor Patch. Secunia Advisory 14 of 32 in 2007. 12,647 views.
Release Date:
2007-07-10
Secunia Advisory ID:
SA26002
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Windows Active Directory, which can be exploited by malicious users and malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Windows Secure Channel Digital Signature Parsing Vulnerability
Vendor Patch. Secunia Advisory 15 of 32 in 2007. 14,813 views.
Release Date:
2007-06-12
Secunia Advisory ID:
SA25620
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows Win32 API Code Execution Vulnerability
Vendor Patch. Secunia Advisory 16 of 32 in 2007. 16,793 views.
Release Date:
2007-06-12
Secunia Advisory ID:
SA25640
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a user's system. [Read More]


Microsoft Outlook Express and Windows Mail Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 17 of 32 in 2007. 22,241 views.
Release Date:
2007-06-12
Secunia Advisory ID:
SA25639
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Outlook Express and Windows Mail, which can be exploited by malicious people to disclose sensitive information and compromise a user's system. [Read More]


Microsoft Windows Active Directory Logon Hours User Enumeration Weakness
Unpatched. Secunia Advisory 18 of 32 in 2007. 11,798 views.
Release Date:
2007-05-31
Secunia Advisory ID:
SA25457
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Where:
From local network
Short Description:
Sumit Siddharth has reported a weakness in Microsoft Windows, which can be exploited by malicious people to identify valid user accounts. [Read More]


Microsoft Windows DNS Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 19 of 32 in 2007. 23,824 views.
Release Date:
2007-04-13
Secunia Advisory ID:
SA24871
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Kernel Mapped Memory Insecure Permissions
Vendor Patch. Secunia Advisory 20 of 32 in 2007. 11,966 views.
Release Date:
2007-04-10
Secunia Advisory ID:
SA24834
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Agent URL Parsing Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 21 of 32 in 2007. 16,569 views.
Release Date:
2007-04-10
Secunia Advisory ID:
SA22896
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Secunia Research has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Animated Cursor Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 22 of 32 in 2007. 84,070 views.
Release Date:
2007-03-30
Secunia Advisory ID:
SA24659
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows NDISTAPI.SYS Denial of Service
Partial Fix. Secunia Advisory 23 of 32 in 2007. 11,271 views.
Release Date:
2007-03-20
Secunia Advisory ID:
SA24598
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Rubén Santamarta has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Directory Monitoring Information Disclosure Weakness
Unpatched. Secunia Advisory 24 of 32 in 2007. 16,487 views.
Release Date:
2007-02-23
Secunia Advisory ID:
SA24245
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Exposure of system information
Where:
Local system
Short Description:
3APA3A has discovered a weakness in Microsoft Windows, which can be exploited by malicious, local users to gain knowledge of certain information. [Read More]


Microsoft RichEdit OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 25 of 32 in 2007. 13,885 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24152
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a users system. [Read More]


Microsoft MFC OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 26 of 32 in 2007. 13,020 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24150
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows and Visual Studio, which can be exploited by malicious people to compromise a users system. [Read More]


Microsoft Windows OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 27 of 32 in 2007. 10,926 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24147
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Shell Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 28 of 32 in 2007. 12,956 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24126
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft MDAC ADODB.Connection ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 29 of 32 in 2007. 19,649 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA22452
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Yag Kohha has reported a vulnerability in Microsoft Data Access Components, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows HTML Help ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 30 of 32 in 2007. 13,053 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24136
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft XML Core Services Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 31 of 32 in 2007. 52,118 views.
Release Date:
2007-01-09
Secunia Advisory ID:
SA23655
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft XML Core Services, which can be exploited by malicious people to gain knowledge of sensitive information or potentially compromise a user's system. [Read More]


Microsoft Windows Vector Markup Language Vulnerabilities
Vendor Patch. Secunia Advisory 32 of 32 in 2007. 34,691 views.
Release Date:
2007-01-09
Secunia Advisory ID:
SA23677
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system [Read More]


Microsoft Windows CSRSS Information Disclosure Vulnerability
Vendor Patch. Secunia Advisory 1 of 39 in 2006. 16,276 views.
Release Date:
2006-12-28
Secunia Advisory ID:
SA23491
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
DoS
Where:
Local system
Short Description:
Rubén Santamarta has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain knowledge of sensitive information. [Read More]


Microsoft Windows CSRSS MsgBox Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 2 of 39 in 2006. 30,233 views.
Release Date:
2006-12-22
Secunia Advisory ID:
SA23448
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Outlook Express Address Book Contact Record Vulnerability
Vendor Patch. Secunia Advisory 3 of 39 in 2006. 13,260 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23311
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Outlook Express, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows File Manifest Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 4 of 39 in 2006. 11,643 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23308
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows SNMP Service GetBulkRequest Memory Corruption
Vendor Patch. Secunia Advisory 5 of 39 in 2006. 15,936 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23307
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Format Runtime ASX/ASF Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 6 of 39 in 2006. 18,999 views.
Release Date:
2006-12-08
Secunia Advisory ID:
SA22971
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Windows Media Format Runtime, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Client Service for Netware Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 39 in 2006. 19,414 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22866
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Microsoft Windows Agent ActiveX Control Buffer Overflow
Vendor Patch. Secunia Advisory 8 of 39 in 2006. 18,732 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22878
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows GDI Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 9 of 39 in 2006. 21,026 views.
Release Date:
2006-11-06
Secunia Advisory ID:
SA22668
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Microsoft XMLHTTP ActiveX Control Code Execution Vulnerability
Vendor Patch. Secunia Advisory 10 of 39 in 2006. 72,893 views.
Release Date:
2006-11-04
Secunia Advisory ID:
SA22687
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft XML Core Services, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Object Packager Dialog Spoofing Vulnerability
Vendor Patch. Secunia Advisory 11 of 39 in 2006. 10,263 views.
Release Date:
2006-10-10
Secunia Advisory ID:
SA20717
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
System access
Where:
From remote
Short Description:
Secunia Research has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks. [Read More]


Microsoft Windows Multiple IPv6 Denial of Service Vulnerabilities
Vendor Patch. Secunia Advisory 12 of 39 in 2006. 12,634 views.
Release Date:
2006-10-10
Secunia Advisory ID:
SA22341
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Shell Code Execution Vulnerability
Vendor Patch. Secunia Advisory 13 of 39 in 2006. 38,019 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22159
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
H D Moore has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Vector Graphics Rendering Library Buffer Overflow
Vendor Patch. Secunia Advisory 14 of 39 in 2006. 68,569 views.
Release Date:
2006-09-19
Secunia Advisory ID:
SA21989
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Indexing Service Cross-Site Scripting
Vendor Patch. Secunia Advisory 15 of 39 in 2006. 13,435 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21861
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Eiji James Yoshida has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Windows DNS Resolution Code Execution Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 39 in 2006. 17,593 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21394
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Server Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 17 of 39 in 2006. 19,460 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21388
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Two Vulnerabilities
Vendor Patch. Secunia Advisory 18 of 39 in 2006. 13,640 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21417
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF File Handling Denial of Service
Unpatched. Secunia Advisory 19 of 39 in 2006. 14,281 views.
Release Date:
2006-08-07
Secunia Advisory ID:
SA21377
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
cyanid-E has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Server Service DoS and Privilege Escalation
Vendor Patch. Secunia Advisory 20 of 39 in 2006. 17,594 views.
Release Date:
2006-07-31
Secunia Advisory ID:
SA21276
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Server Service Two Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 39 in 2006. 15,389 views.
Release Date:
2006-07-11
Secunia Advisory ID:
SA21007
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to expose sensitive information and compromise a vulnerable system. [Read More]


Windows DHCP Client Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 22 of 39 in 2006. 15,060 views.
Release Date:
2006-07-11
Secunia Advisory ID:
SA21010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Cybsec Security Systems has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows HTML Help ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 23 of 39 in 2006. 26,873 views.
Release Date:
2006-07-04
Secunia Advisory ID:
SA20906
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Internet Explorer Information Disclosure and HTA Application Execution
Vendor Patch. Secunia Advisory 24 of 39 in 2006. 29,654 views.
Release Date:
2006-06-27
Secunia Advisory ID:
SA20825
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Plebo Aesdi Nael has discovered two vulnerabilities in Microsoft Windows, which can be exploited by malicious people to disclose potentially sensitive information and potentially compromise a user's system. [Read More]


Microsoft Windows Hyperlink Object Library Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 39 in 2006. 41,992 views.
Release Date:
2006-06-20
Secunia Advisory ID:
SA20748
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Routing and Remote Access Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 39 in 2006. 19,007 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20630
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people or users to compromise a vulnerable system. [Read More]


Microsoft JScript Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 27 of 39 in 2006. 13,524 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20620
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows TCP/IP Protocol Driver Buffer Overflow
Vendor Patch. Secunia Advisory 28 of 39 in 2006. 23,675 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20639
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows ART Image Handling Buffer Overflow
Vendor Patch. Secunia Advisory 29 of 39 in 2006. 13,559 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20605
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows SMB Denial of Service and Privilege Escalation
Vendor Patch. Secunia Advisory 30 of 39 in 2006. 12,046 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20635
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Ruben Santamarta has reported two vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and gain escalated privileges. [Read More]


Microsoft Windows "mhtml:" URI Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 31 of 39 in 2006. 23,002 views.
Release Date:
2006-06-01
Secunia Advisory ID:
SA20384
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Mr.Niega has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Distributed Transaction Coordinator Two Vulnerabilities
Vendor Patch. Secunia Advisory 32 of 39 in 2006. 37,289 views.
Release Date:
2006-05-09
Secunia Advisory ID:
SA20000
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft Windows Explorer COM Object Handling Vulnerability
Vendor Patch. Secunia Advisory 33 of 39 in 2006. 17,055 views.
Release Date:
2006-04-11
Secunia Advisory ID:
SA19606
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Player Plug-in EMBED Element Buffer Overflow
Vendor Patch. Secunia Advisory 34 of 39 in 2006. 25,340 views.
Release Date:
2006-02-14
Secunia Advisory ID:
SA18852
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Windows Media Player plug-in, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Web Client Service Vulnerability
Vendor Patch. Secunia Advisory 35 of 39 in 2006. 13,369 views.
Release Date:
2006-02-14
Secunia Advisory ID:
SA18857
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows IGMP Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 36 of 39 in 2006. 17,518 views.
Release Date:
2006-02-14
Secunia Advisory ID:
SA18853
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows / Office Korean Input Method Editor Vulnerability
Vendor Patch. Secunia Advisory 37 of 39 in 2006. 17,674 views.
Release Date:
2006-02-14
Secunia Advisory ID:
SA18859
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Ryan Lee has reported a vulnerability in various Microsoft products, which can be exploited by malicious people to gain escalated privileges or compromise a vulnerable system. [Read More]


Windows Insecure Service Permissions Privilege Escalation
Vendor Patch. Secunia Advisory 38 of 39 in 2006. 18,678 views.
Release Date:
2006-02-08
Secunia Advisory ID:
SA18756
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Sudhakar Govindavajhala and Andrew W. Appel have reported some security issues in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Embedded Web Fonts Code Execution Vulnerability
Vendor Patch. Secunia Advisory 39 of 39 in 2006. 18,450 views.
Release Date:
2006-01-10
Secunia Advisory ID:
SA18365
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF "SETABORTPROC" Arbitrary Code Execution
Vendor Patch. Secunia Advisory 1 of 37 in 2005. 168,149 views.
Release Date:
2005-12-28
Secunia Advisory ID:
SA18255
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF/EMF File Rendering Arbitrary Code Execution
Vendor Patch. Secunia Advisory 2 of 37 in 2005. 27,906 views.
Release Date:
2005-11-08
Secunia Advisory ID:
SA17498
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Client Service for NetWare Buffer Overflow
Vendor Patch. Secunia Advisory 3 of 37 in 2005. 15,580 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17165
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users, or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Shell and Web View Three Vulnerabilities
Vendor Patch. Secunia Advisory 4 of 37 in 2005. 15,317 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17168
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Collaboration Data Objects Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 5 of 37 in 2005. 17,348 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17167
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Gary O'leary-Steele has reported a vulnerability in Microsoft Windows and Microsoft Exchange 2000 Server, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows FTP Client Filename Validation Vulnerability
Vendor Patch. Secunia Advisory 6 of 37 in 2005. 23,841 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17163
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows MSDTC and COM+ Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 37 in 2005. 24,591 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17161
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges, or by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows DirectShow AVI Handling Vulnerability
Vendor Patch. Secunia Advisory 8 of 37 in 2005. 20,721 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17160
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has been reported a vulnerability in Microsoft Windows DirectShow, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows COM Object Instantiation Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 9 of 37 in 2005. 59,162 views.
Release Date:
2005-08-18
Secunia Advisory ID:
SA16480
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Internet Explorer, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Telephony Service Vulnerability
Vendor Patch. Secunia Advisory 10 of 37 in 2005. 16,603 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16354
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Print Spooler Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 11 of 37 in 2005. 27,205 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16356
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows Plug-and-Play Service Buffer Overflow
Vendor Patch. Secunia Advisory 12 of 37 in 2005. 26,093 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16372
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
ISS X-Force has reported a vulnerability in Microsoft Windows, which can be exploited by malicious users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Two Kerberos Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 37 in 2005. 13,717 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16368
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Exposure of sensitive information
DoS
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to cause a DoS (Denial of Service), reveal sensitive information, or impersonate other users. [Read More]


Microsoft Windows Unspecified USB Device Driver Vulnerability
Unpatched. Secunia Advisory 14 of 37 in 2005. 34,394 views.
Release Date:
2005-07-27
Secunia Advisory ID:
SA16210
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people with physical access to a vulnerable system to compromise it. [Read More]


Windows Remote Desktop Protocol Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 15 of 37 in 2005. 37,705 views.
Release Date:
2005-07-14
Secunia Advisory ID:
SA16071
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Tom Ferris has reported a vulnerability in Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Network Connections Service Denial of Service
Vendor Patch. Secunia Advisory 16 of 37 in 2005. 23,897 views.
Release Date:
2005-07-14
Secunia Advisory ID:
SA16065
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
bkbll has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Color Management Module Buffer Overflow
Vendor Patch. Secunia Advisory 17 of 37 in 2005. 28,709 views.
Release Date:
2005-07-12
Secunia Advisory ID:
SA16004
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Step-by-Step Interactive Training Vulnerability
Vendor Patch. Secunia Advisory 18 of 37 in 2005. 15,915 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15669
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
iDEFENSE Labs has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Web Client Service Vulnerability
Vendor Patch. Secunia Advisory 19 of 37 in 2005. 15,350 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15696
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Mark Litchfield has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a user's system. [Read More]


Microsoft Windows Server Message Block Vulnerability
Vendor Patch. Secunia Advisory 20 of 37 in 2005. 18,584 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15694
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Agent Trusted Internet Content Spoofing Vulnerability
Vendor Patch. Secunia Advisory 21 of 37 in 2005. 14,461 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15689
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to spoof certain information and potentially trick a user into installing a malicious program. [Read More]


Microsoft Windows HTML Help Input Validation Vulnerability
Vendor Patch. Secunia Advisory 22 of 37 in 2005. 17,496 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15683
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Internet Explorer Two Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 37 in 2005. 23,010 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15606
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Internet Explorer, which can be exploited by malicious people to disclose sensitive information and compromise a users system. [Read More]


Microsoft Telnet Client Information Disclosure Weakness
Vendor Patch. Secunia Advisory 24 of 37 in 2005. 15,184 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15690
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Where:
From remote
Short Description:
Gaël Delalleau has reported a weakness in Microsoft Windows, which can be exploited by malicious people to gain knowledge of various information. [Read More]


Windows Remote Desktop Protocol Private Key Disclosure
Unpatched. Secunia Advisory 25 of 37 in 2005. 29,398 views.
Release Date:
2005-06-06
Secunia Advisory ID:
SA15605
Solution Status:
Unpatched
Criticality:
Impact:
Hijacking
Where:
From remote
Short Description:
Massimiliano Montoro has reported a security issue in Microsoft Windows, which can be exploited by malicious people to conduct MitM (Man-in-the-Middle) attacks. [Read More]


Microsoft Windows Kernel Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 37 in 2005. 15,021 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14927
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in the Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Microsoft Windows Shell MSHTA Script Execution Vulnerability
Vendor Patch. Secunia Advisory 27 of 37 in 2005. 19,012 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14909
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Server 2003 Local Denial of Service Vulnerabilities
Vendor Patch. Secunia Advisory 28 of 37 in 2005. 12,631 views.
Release Date:
2005-04-05
Secunia Advisory ID:
SA14808
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Two vulnerabilities have been reported in Microsoft Windows Server 2003, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows EMF File Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 29 of 37 in 2005. 19,417 views.
Release Date:
2005-03-18
Secunia Advisory ID:
SA14631
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Hongzhen Zhou has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows TCP/IP Implementation Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 37 in 2005. 30,005 views.
Release Date:
2005-03-07
Secunia Advisory ID:
SA14512
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows License Logging Service Buffer Overflow
Vendor Patch. Secunia Advisory 31 of 37 in 2005. 14,760 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14192
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported a vulnerability in some versions of Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Hyperlink Object Library Buffer Overflow
Vendor Patch. Secunia Advisory 32 of 37 in 2005. 15,368 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14195
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Anna Hollingzworth has reported a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows SMB Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 33 of 37 in 2005. 17,588 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA11634
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows OLE / COM Two Vulnerabilities
Vendor Patch. Secunia Advisory 34 of 37 in 2005. 15,155 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14193
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Cesar Cerrudo has reported two vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Drag and Drop Vulnerability
Vendor Patch. Secunia Advisory 35 of 37 in 2005. 19,039 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14190
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Registry Key Locking Denial of Service
Unpatched. Secunia Advisory 36 of 37 in 2005. 21,348 views.
Release Date:
2005-01-31
Secunia Advisory ID:
SA14061
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Vladimir Kraljevic has reported a security issue in Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Indexing Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 37 of 37 in 2005. 21,974 views.
Release Date:
2005-01-11
Secunia Advisory ID:
SA13802
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows XP and 2003, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Multiple Vulnerabilities
Partial Fix. Secunia Advisory 1 of 24 in 2004. 49,136 views.
Release Date:
2004-12-25
Secunia Advisory ID:
SA13645
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Flashsky has reported some vulnerabilities in Microsoft Windows, allowing malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]


Microsoft Word for Windows Converter Buffer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 24 in 2004. 18,803 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13462
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows WINS "Name" Validation Vulnerability
Vendor Patch. Secunia Advisory 3 of 24 in 2004. 16,082 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13466
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported two vulnerabilities in Microsoft Windows, allowing malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows HyperTerminal Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 4 of 24 in 2004. 17,957 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13464
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Brett Moore has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel and LSASS Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 24 in 2004. 17,494 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13465
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Cesar Cerrudo has reported two vulnerabilities in Microsoft Windows, allowing malicious, local users to escalate their privileges. [Read More]


Microsoft Windows WINS Replication Packet Handling Vulnerability
Vendor Patch. Secunia Advisory 6 of 24 in 2004. 21,527 views.
Release Date:
2004-11-29
Secunia Advisory ID:
SA13328
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Nicolas Waisman has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Shell and Program Group Converter Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 24 in 2004. 17,300 views.
Release Date:
2004-10-13
Secunia Advisory ID:
SA12808
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows NetDDE Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 24 in 2004. 16,996 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12803
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
John Heasman has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows NNTP Component Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 24 in 2004. 12,012 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12802
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Core Security Technologies has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WebDAV XML Message Handler Denial of Service
Vendor Patch. Secunia Advisory 10 of 24 in 2004. 18,167 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12801
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Amit Klein has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows SMTP Component Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 11 of 24 in 2004. 16,466 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12807
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in the Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Compressed Folders Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 12 of 24 in 2004. 17,545 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12805
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 24 in 2004. 19,752 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12804
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited to cause a DoS (Denial of Service), gain escalated privileges, or compromise a vulnerable system. [Read More]


Microsoft Multiple Products JPEG Processing Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 14 of 24 in 2004. 56,192 views.
Release Date:
2004-09-14
Secunia Advisory ID:
SA12528
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Nick DeBaggis has reported a vulnerability in multiple Microsoft products, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows showHelp and HTML Help Vulnerabilities
Vendor Patch. Secunia Advisory 15 of 24 in 2004. 16,370 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12059
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Microsoft has issued an update for Windows. This fixes two vulnerabilities, allowing malicious websites to compromise a vulnerable system. [Read More]


Microsoft Windows / Internet Explorer File Download Extension Spoofing
Vendor Patch. Secunia Advisory 16 of 24 in 2004. 18,313 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12058
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Microsoft has issued an update for Microsoft Windows. This fixes a vulnerability, allowing malicious web sites to spoof the extension of files being downloaded. [Read More]


Microsoft DirectPlay Packet Validation Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 17 of 24 in 2004. 15,780 views.
Release Date:
2004-06-08
Secunia Advisory ID:
SA11802
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
John Lampe has discovered a vulnerability in Microsoft DirectPlay, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Help and Support Center URL Validation Vulnerability
Vendor Patch. Secunia Advisory 18 of 24 in 2004. 21,043 views.
Release Date:
2004-05-11
Secunia Advisory ID:
SA11590
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a vulnerability in the Help and Support Center. [Read More]


Microsoft Windows 14 Vulnerabilities
Vendor Patch. Secunia Advisory 19 of 24 in 2004. 36,296 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11064
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Microsoft has acknowledged 14 vulnerabilities in the Windows operating system, where the most serious can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Jet Database Engine Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 20 of 24 in 2004. 15,867 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11068
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Matt Thompson has discovered a vulnerability in Microsoft Jet Database Engine, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows RPC/DCOM Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 24 in 2004. 18,107 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11065
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Microsoft has issued an advisory regarding multiple vulnerabilities in RPC/DCOM, where the most serious can potentially lead to a system compromise. [Read More]


Microsoft Windows WINS Server Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 22 of 24 in 2004. 15,405 views.
Release Date:
2004-02-10
Secunia Advisory ID:
SA10835
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Qualys has discovered a vulnerability in certain versions of Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft Windows ASN.1 Library Integer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 24 in 2004. 28,823 views.
Release Date:
2004-02-10
Secunia Advisory ID:
SA10759
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has discovered some vulnerabilities in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Data Access Components Broadcast Reply Buffer Overflow
Vendor Patch. Secunia Advisory 24 of 24 in 2004. 16,965 views.
Release Date:
2004-01-13
Secunia Advisory ID:
SA10616
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has reported a vulnerability in MDAC (Microsoft Data Access Components), which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft HTML Help Control Privilege Escalation Vulnerability
Unpatched. Secunia Advisory 1 of 15 in 2003. 19,663 views.
Release Date:
2003-10-27
Secunia Advisory ID:
SA10066
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft HTML Help, which can be exploited by malicious, local users to escalate their privileges. [Read More]


Microsoft Windows May Allow Installation of Arbitrary ActiveX Controls
Vendor Patch. Secunia Advisory 2 of 15 in 2003. 17,192 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to fix a vulnerability in Microsoft Windows (Internet Explorer) allowing malicious HTML documents like web pages or emails to install arbitrary ActiveX controls. [Read More]


Microsoft Windows Buffer Overflow in ListBox and ComboBox Control
Vendor Patch. Secunia Advisory 3 of 15 in 2003. 15,024 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10014
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Microsoft has issued patches to fix a vulnerability in Microsoft Windows allowing malicious users to escalate their privileges. [Read More]


Microsoft Windows Help and Support Center Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 4 of 15 in 2003. 16,942 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10013
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a vulnerability in the Help and Support Center. [Read More]


Microsoft Windows Buffer Overflow in Messenger Service
Vendor Patch. Secunia Advisory 5 of 15 in 2003. 23,015 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10012
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a buffer overflow vulnerability in Messenger Service, which could lead to execution of arbitrary code. [Read More]


Microsoft Windows Unauthorised Thread Termination
Unpatched. Secunia Advisory 6 of 15 in 2003. 18,530 views.
Release Date:
2003-10-03
Secunia Advisory ID:
SA9921
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Windows, which can be exploited by malicious, local users to terminate certain privileged programs. [Read More]


Windows 2003 Server Buffer Overflow Protection Mechanism Bypass
Unpatched. Secunia Advisory 7 of 15 in 2003. 15,665 views.
Release Date:
2003-09-12
Secunia Advisory ID:
SA9720
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
A security issue has been identified in Windows 2003 Server, which can be exploited to bypass the security mechanism included for detecting and protecting against exploitation of stack based buffer overflows. [Read More]


Microsoft Windows RPCSS Service DCOM Interface Vulnerabilities
Vendor Patch. Secunia Advisory 8 of 15 in 2003. 34,073 views.
Release Date:
2003-09-10
Secunia Advisory ID:
SA9692
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Three vulnerabilities have been identified in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]


Microsoft Windows NetBIOS Random Memory Content Disclosure
Vendor Patch. Secunia Advisory 9 of 15 in 2003. 13,844 views.
Release Date:
2003-09-03
Secunia Advisory ID:
SA9665
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From local network
Short Description:
A vulnerability has been discovered in all supported Windows versions except Windows ME, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]


Microsoft Windows Server 2003 Remote Admin Cross-Site Scripting
Vendor Patch. Secunia Advisory 10 of 15 in 2003. 22,373 views.
Release Date:
2003-07-23
Secunia Advisory ID:
SA9334
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows 2003, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Microsoft Windows DirectX Remotely Exploitable Buffer Overflow
Vendor Patch. Secunia Advisory 11 of 15 in 2003. 23,984 views.
Release Date:
2003-07-23
Secunia Advisory ID:
SA9335
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in DirectX allowing malicious people to gain system access. [Read More]


Windows RPC DCOM Interface Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 12 of 15 in 2003. 21,881 views.
Release Date:
2003-07-16
Secunia Advisory ID:
SA9287
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been identified in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows HTML Converter Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 13 of 15 in 2003. 16,172 views.
Release Date:
2003-06-25
Secunia Advisory ID:
SA9113
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been identified in all supported Windows versions, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows 2003 Server NIC Driver Information Disclosure Vulnerability
Unpatched. Secunia Advisory 14 of 15 in 2003. 23,073 views.
Release Date:
2003-06-11
Secunia Advisory ID:
SA8987
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
Where:
From local network
Short Description:
A vulnerability has been identified in some NIC (Network Interface Card) device drivers shipped with Microsoft Windows 2003 Server, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]


Windows NTFS File System Information Disclosure
Unpatched. Secunia Advisory 15 of 15 in 2003. 18,339 views.
Release Date:
2003-04-22
Secunia Advisory ID:
SA8635
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
Where:
Local system
Short Description:
Matthew Murphy has reported a security issue in Windows, which potentially can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]