Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Microsoft Windows 2000 Server
This vulnerability report for Microsoft Windows 2000 Server contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Microsoft Windows 2000 Server then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Microsoft

Product Link N/A

Affected By 246 Secunia advisories
269 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 11% (26 of 246 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Microsoft Windows 2000 Server, with all vendor patches applied, is rated Highly critical .




246 Secunia Advisories in 2003-2009
Secunia has issued a total of 246 Secunia advisories in 2003-2009 for Microsoft Windows 2000 Server. Currently, 11% (26 out of 246) are marked as unpatched with the most severe being rated Highly critical

More information about the specific Secunia advisories affecting Microsoft Windows 2000 Server can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Microsoft WordPad / Office Text Converters Integer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 34 in 2009. 2,470 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37580
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Local Security Authority Subsystem Denial of Service
Vendor Patch. Secunia Advisory 2 of 34 in 2009. 648 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37524
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Indeo Codec Multiple Vulnerabilities
Unpatched. Secunia Advisory 3 of 34 in 2009. 2,167 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37592
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows MS-CHAP Authentication Bypass
Vendor Patch. Secunia Advisory 4 of 34 in 2009. 662 views.
Release Date:
2009-12-08
Secunia Advisory ID:
SA37543
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security restrictions. [Read More]


Microsoft Windows Win32k Kernel-Mode Driver Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 34 in 2009. 6,212 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37318
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory Denial of Service
Vendor Patch. Secunia Advisory 6 of 34 in 2009. 1,095 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37304
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows License Logging Server Buffer Overflow
Vendor Patch. Secunia Advisory 7 of 34 in 2009. 962 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37311
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Privilege Escalation and Denial of Service
Vendor Patch. Secunia Advisory 8 of 34 in 2009. 1,187 views.
Release Date:
2009-10-14
Secunia Advisory ID:
SA37001
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or to potentially gain escalated privileges. [Read More]


Microsoft Windows ActiveX Controls ATL "OleLoadFromStream()" Vulnerability
Vendor Patch. Secunia Advisory 9 of 34 in 2009. 2,425 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36997
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]


Microsoft Windows Media Runtime Code Execution Vulnerability
Vendor Patch. Secunia Advisory 10 of 34 in 2009. 1,275 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36938
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Indexing Service ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 11 of 34 in 2009. 1,056 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA37000
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows CryptoAPI Two Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 12 of 34 in 2009. 1,185 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36999
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks. [Read More]


Microsoft JScript Scripting Engine Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 13 of 34 in 2009. 1,564 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36551
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Media Format Two Code Execution Vulnerabilities
Vendor Patch. Secunia Advisory 14 of 34 in 2009. 3,020 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36596
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows Media Format, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows 2000 / XP TCP/IP Window Size Denial of Service Vulnerabilities
Unpatched. Secunia Advisory 15 of 34 in 2009. 4,615 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36597
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows 2000 and Windows XP, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows DHTML Editing ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 16 of 34 in 2009. 1,457 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36592
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Telnet NTLM Credential Reflection Vulnerability
Vendor Patch. Secunia Advisory 17 of 34 in 2009. 1,720 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36222
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows AVI Media File Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 18 of 34 in 2009. 1,669 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36206
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Message Queuing Service Privilege Escalation
Vendor Patch. Secunia Advisory 19 of 34 in 2009. 1,638 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36214
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows WINS Service Two Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 34 in 2009. 1,645 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36213
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Various Components ATL Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 34 in 2009. 8,379 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36187
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in various Windows components, which can be exploited by malicious people to bypass security features or compromise a user's system. [Read More]


Microsoft Remote Desktop Connection Two Vulnerabilities
Vendor Patch. Secunia Advisory 22 of 34 in 2009. 6,196 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36229
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows and Microsoft Remote Desktop Connection Client for Mac, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Embedded OpenType Font Engine Two Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 34 in 2009. 7,048 views.
Release Date:
2009-07-14
Secunia Advisory ID:
SA35773
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory Two Vulnerabilities
Vendor Patch. Secunia Advisory 24 of 34 in 2009. 2,195 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35355
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows RPC Marshalling Engine Vulnerability
Vendor Patch. Secunia Advisory 25 of 34 in 2009. 4,391 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35373
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]


Microsoft Windows Print Spooler Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 34 in 2009. 3,224 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35365
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
System access
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to disclose sensitive information, and by malicious users and malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Kernel Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 27 of 34 in 2009. 2,390 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35372
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows "SystemParametersInfo()" Privilege Escalation
Vendor Patch. Secunia Advisory 28 of 34 in 2009. 2,594 views.
Release Date:
2009-06-03
Secunia Advisory ID:
SA35323
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft DirectShow QuickTime Parsing Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 29 of 34 in 2009. 8,409 views.
Release Date:
2009-05-29
Secunia Advisory ID:
SA35268
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows HTTP Services Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 34 in 2009. 7,914 views.
Release Date:
2009-04-14
Secunia Advisory ID:
SA34677
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks or compromise a user's system. [Read More]


Microsoft DirectShow MJPEG Decompression Vulnerability
Vendor Patch. Secunia Advisory 31 of 34 in 2009. 3,839 views.
Release Date:
2009-04-14
Secunia Advisory ID:
SA34665
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft DirectX, which can be exploited by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows Multiple Kernel Vulnerabilities
Vendor Patch. Secunia Advisory 32 of 34 in 2009. 5,472 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34117
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows DNS / WINS Multiple Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 33 of 34 in 2009. 3,516 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34217
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to poison a DNS cache and conduct spoofing attacks. [Read More]


Microsoft Windows SChannel Authentication Bypass
Vendor Patch. Secunia Advisory 34 of 34 in 2009. 6,596 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34215
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security mechanisms. [Read More]


Microsoft Windows WordPad / Office Text Converters Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 30 in 2008. 10,053 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA32997
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows GDI Image Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 30 in 2008. 9,056 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA33020
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]


Microsoft Windows SMB Authentication Credential Replay Vulnerability
Vendor Patch. Secunia Advisory 3 of 30 in 2008. 8,180 views.
Release Date:
2008-11-11
Secunia Advisory ID:
SA32633
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Spoofing
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security features. [Read More]


Microsoft Windows Path Canonicalisation Vulnerability
Vendor Patch. Secunia Advisory 4 of 30 in 2008. 23,201 views.
Release Date:
2008-10-23
Secunia Advisory ID:
SA32326
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows IIS IPP Service Integer Overflow Vulnerability
Vendor Patch. Secunia Advisory 5 of 30 in 2008. 6,808 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32248
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows 2000 Message Queuing Service Vulnerability
Vendor Patch. Secunia Advisory 6 of 30 in 2008. 3,418 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32260
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 30 in 2008. 4,170 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32247
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Microsoft Windows SMB Buffer Underflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 30 in 2008. 4,854 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32249
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Active Directory Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 30 in 2008. 4,084 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32242
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows SMB Packet Handling Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 30 in 2008. 9,635 views.
Release Date:
2008-09-16
Secunia Advisory ID:
SA31883
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows "IopfCompleteRequest" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 11 of 30 in 2008. 6,662 views.
Release Date:
2008-09-10
Secunia Advisory ID:
SA31824
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Ruben Santamarta has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Event System Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 12 of 30 in 2008. 6,044 views.
Release Date:
2008-08-12
Secunia Advisory ID:
SA31417
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Color Management System Buffer Overflow
Vendor Patch. Secunia Advisory 13 of 30 in 2008. 8,260 views.
Release Date:
2008-08-12
Secunia Advisory ID:
SA31385
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft SQL Server and MSDE Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 14 of 30 in 2008. 10,031 views.
Release Date:
2008-07-08
Secunia Advisory ID:
SA30970
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
Where:
From local network
Short Description:
Four vulnerabilities have been reported in Microsoft SQL Server, which can be exploited by malicious users to gain escalated privileges. [Read More]


Microsoft Windows DNS Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 15 of 30 in 2008. 8,399 views.
Release Date:
2008-07-08
Secunia Advisory ID:
SA30925
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft DirectX MJPEG/SAMI File Processing Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 30 in 2008. 8,413 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30579
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Speech Recognition Security Issue
Vendor Patch. Secunia Advisory 17 of 30 in 2008. 6,841 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30578
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A security issue has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory LDAP Request Processing Denial of Service
Vendor Patch. Secunia Advisory 18 of 30 in 2008. 8,317 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30586
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people or malicious users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows WINS Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 19 of 30 in 2008. 6,175 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30584
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 30 in 2008. 14,839 views.
Release Date:
2008-04-18
Secunia Advisory ID:
SA29867
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows GDI Image Parsing Buffer Overflows
Vendor Patch. Secunia Advisory 21 of 30 in 2008. 8,993 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29704
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows DNS Client Predictable Transaction ID Vulnerability
Vendor Patch. Secunia Advisory 22 of 30 in 2008. 8,260 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29696
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft VBScript/JScript Script Decoding Buffer Overflow
Vendor Patch. Secunia Advisory 23 of 30 in 2008. 9,407 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29712
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 24 of 30 in 2008. 8,566 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29720
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows hxvz.dll ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 25 of 30 in 2008. 9,261 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29714
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows "NoDriveTypeAutoRun" Security Issue
Vendor Patch. Secunia Advisory 26 of 30 in 2008. 15,106 views.
Release Date:
2008-03-21
Secunia Advisory ID:
SA29458
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
Local system
Short Description:
CERT/CC has reported a security issue in Windows, which can be exploited by malicious people to bypass certain security settings. [Read More]


Microsoft Windows OLE Automation Memory Corruption
Vendor Patch. Secunia Advisory 27 of 30 in 2008. 10,199 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28902
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Active Directory Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 28 of 30 in 2008. 8,315 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28764
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users and malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows LSASS Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 29 of 30 in 2008. 11,683 views.
Release Date:
2008-01-08
Secunia Advisory ID:
SA28341
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows TCP/IP Implementation Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 30 in 2008. 18,385 views.
Release Date:
2008-01-08
Secunia Advisory ID:
SA28297
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft DirectX SAMI/WAV/AVI File Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 26 in 2007. 13,632 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Media Format Runtime ASF Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 26 in 2007. 14,391 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28034
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
IBM X-Force has reported four vulnerabilities in Windows Media Format Runtime / Windows Media Services, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Message Queuing Buffer Overflow
Vendor Patch. Secunia Advisory 3 of 26 in 2007. 9,061 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28051
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Web Proxy Auto-Discovery Feature Security Issue
Vendor Workaround. Secunia Advisory 4 of 26 in 2007. 18,078 views.
Release Date:
2007-12-04
Secunia Advisory ID:
SA27901
Solution Status:
Vendor Workaround
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
Where:
From remote
Short Description:
A security issue has been reported in Microsoft's Web Proxy Auto-Discovery (WPAD) feature, which can be exploited by malicious people to conduct man-in-the-middle (MITM) attacks. [Read More]


Microsoft Windows DNS Service Cache Poisoning Vulnerability
Vendor Patch. Secunia Advisory 5 of 26 in 2007. 15,574 views.
Release Date:
2007-11-13
Secunia Advisory ID:
SA27584
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft Windows Kodak Image Viewer Code Execution
Vendor Patch. Secunia Advisory 6 of 26 in 2007. 15,417 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27092
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows 2000 RPC Authentication Information Disclosure
Vendor Patch. Secunia Advisory 7 of 26 in 2007. 11,387 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27153
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]


Microsoft Windows NNTP Response Handling Buffer Overflow
Vendor Patch. Secunia Advisory 8 of 26 in 2007. 14,140 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27112
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
VeriSign iDefense Labs has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Agent ActiveX Control URL Handling Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 26 in 2007. 13,733 views.
Release Date:
2007-09-11
Secunia Advisory ID:
SA26753
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Vector Markup Language Buffer Overflow
Vendor Patch. Secunia Advisory 10 of 26 in 2007. 14,350 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26409
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Graphics Rendering Engine Image Handling Vulnerability
Vendor Patch. Secunia Advisory 11 of 26 in 2007. 11,631 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26423
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows OLE Automation "substringData()" Integer Overflow
Vendor Patch. Secunia Advisory 12 of 26 in 2007. 12,826 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26449
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory Two Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 26 in 2007. 12,652 views.
Release Date:
2007-07-10
Secunia Advisory ID:
SA26002
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Windows Active Directory, which can be exploited by malicious users and malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Windows Secure Channel Digital Signature Parsing Vulnerability
Vendor Patch. Secunia Advisory 14 of 26 in 2007. 14,818 views.
Release Date:
2007-06-12
Secunia Advisory ID:
SA25620
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows DNS Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 15 of 26 in 2007. 23,836 views.
Release Date:
2007-04-13
Secunia Advisory ID:
SA24871
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Agent URL Parsing Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 16 of 26 in 2007. 16,571 views.
Release Date:
2007-04-10
Secunia Advisory ID:
SA22896
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Secunia Research has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Mapped Memory Insecure Permissions
Vendor Patch. Secunia Advisory 17 of 26 in 2007. 11,970 views.
Release Date:
2007-04-10
Secunia Advisory ID:
SA24834
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Animated Cursor Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 18 of 26 in 2007. 84,093 views.
Release Date:
2007-03-30
Secunia Advisory ID:
SA24659
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Directory Monitoring Information Disclosure Weakness
Unpatched. Secunia Advisory 19 of 26 in 2007. 16,490 views.
Release Date:
2007-02-23
Secunia Advisory ID:
SA24245
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Exposure of system information
Where:
Local system
Short Description:
3APA3A has discovered a weakness in Microsoft Windows, which can be exploited by malicious, local users to gain knowledge of certain information. [Read More]


Microsoft RichEdit OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 20 of 26 in 2007. 13,892 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24152
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a users system. [Read More]


Microsoft MFC OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 21 of 26 in 2007. 13,025 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24150
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows and Visual Studio, which can be exploited by malicious people to compromise a users system. [Read More]


Microsoft Windows OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 22 of 26 in 2007. 10,933 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24147
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft MDAC ADODB.Connection ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 23 of 26 in 2007. 19,657 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA22452
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Yag Kohha has reported a vulnerability in Microsoft Data Access Components, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows HTML Help ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 24 of 26 in 2007. 13,054 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24136
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft XML Core Services Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 26 in 2007. 52,173 views.
Release Date:
2007-01-09
Secunia Advisory ID:
SA23655
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft XML Core Services, which can be exploited by malicious people to gain knowledge of sensitive information or potentially compromise a user's system. [Read More]


Microsoft Windows Vector Markup Language Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 26 in 2007. 34,698 views.
Release Date:
2007-01-09
Secunia Advisory ID:
SA23677
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system [Read More]


Microsoft Windows CSRSS Information Disclosure Vulnerability
Vendor Patch. Secunia Advisory 1 of 40 in 2006. 16,282 views.
Release Date:
2006-12-28
Secunia Advisory ID:
SA23491
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
DoS
Where:
Local system
Short Description:
Rubén Santamarta has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain knowledge of sensitive information. [Read More]


Windows Workstation Service NetrWkstaUserEnum Denial of Service
Unpatched. Secunia Advisory 2 of 40 in 2006. 19,928 views.
Release Date:
2006-12-26
Secunia Advisory ID:
SA23487
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
h07 has discovered a weakness in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows CSRSS MsgBox Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 3 of 40 in 2006. 30,241 views.
Release Date:
2006-12-22
Secunia Advisory ID:
SA23448
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Remote Installation Service Writable Path Vulnerability
Vendor Patch. Secunia Advisory 4 of 40 in 2006. 12,214 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23312
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Outlook Express Address Book Contact Record Vulnerability
Vendor Patch. Secunia Advisory 5 of 40 in 2006. 13,262 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23311
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Outlook Express, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows SNMP Service GetBulkRequest Memory Corruption
Vendor Patch. Secunia Advisory 6 of 40 in 2006. 15,941 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23307
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Format Runtime ASX/ASF Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 40 in 2006. 19,004 views.
Release Date:
2006-12-08
Secunia Advisory ID:
SA22971
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Windows Media Format Runtime, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Print Spooler Denial of Service Vulnerability
Unpatched. Secunia Advisory 8 of 40 in 2006. 22,431 views.
Release Date:
2006-12-04
Secunia Advisory ID:
SA23196
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
h07 has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Client Service for Netware Vulnerabilities
Vendor Patch. Secunia Advisory 9 of 40 in 2006. 19,422 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22866
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Microsoft Windows Agent ActiveX Control Buffer Overflow
Vendor Patch. Secunia Advisory 10 of 40 in 2006. 18,740 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22878
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Workstation Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 11 of 40 in 2006. 15,599 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22883
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Active Directory Unspecified Denial of Service
Unpatched. Secunia Advisory 12 of 40 in 2006. 16,311 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22871
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
GLEG has reported a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows GDI Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 40 in 2006. 21,031 views.
Release Date:
2006-11-06
Secunia Advisory ID:
SA22668
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Microsoft XMLHTTP ActiveX Control Code Execution Vulnerability
Vendor Patch. Secunia Advisory 14 of 40 in 2006. 72,907 views.
Release Date:
2006-11-04
Secunia Advisory ID:
SA22687
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft XML Core Services, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Shell Code Execution Vulnerability
Vendor Patch. Secunia Advisory 15 of 40 in 2006. 38,024 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22159
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
H D Moore has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Vector Graphics Rendering Library Buffer Overflow
Vendor Patch. Secunia Advisory 16 of 40 in 2006. 68,580 views.
Release Date:
2006-09-19
Secunia Advisory ID:
SA21989
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Indexing Service Cross-Site Scripting
Vendor Patch. Secunia Advisory 17 of 40 in 2006. 13,441 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21861
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Eiji James Yoshida has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 18 of 40 in 2006. 13,109 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21415
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Two Vulnerabilities
Vendor Patch. Secunia Advisory 19 of 40 in 2006. 13,642 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21417
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a vulnerable system. [Read More]


Microsoft Management Console Cross-Site Scripting
Vendor Patch. Secunia Advisory 20 of 40 in 2006. 11,821 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21401
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Windows DNS Resolution Code Execution Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 40 in 2006. 17,597 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21394
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Server Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 22 of 40 in 2006. 19,468 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21388
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF File Handling Denial of Service
Unpatched. Secunia Advisory 23 of 40 in 2006. 14,284 views.
Release Date:
2006-08-07
Secunia Advisory ID:
SA21377
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
cyanid-E has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Server Service DoS and Privilege Escalation
Vendor Patch. Secunia Advisory 24 of 40 in 2006. 17,599 views.
Release Date:
2006-07-31
Secunia Advisory ID:
SA21276
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Server Service Two Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 40 in 2006. 15,396 views.
Release Date:
2006-07-11
Secunia Advisory ID:
SA21007
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to expose sensitive information and compromise a vulnerable system. [Read More]


Windows DHCP Client Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 26 of 40 in 2006. 15,064 views.
Release Date:
2006-07-11
Secunia Advisory ID:
SA21010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Cybsec Security Systems has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows HTML Help ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 27 of 40 in 2006. 26,882 views.
Release Date:
2006-07-04
Secunia Advisory ID:
SA20906
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Internet Explorer Information Disclosure and HTA Application Execution
Vendor Patch. Secunia Advisory 28 of 40 in 2006. 29,661 views.
Release Date:
2006-06-27
Secunia Advisory ID:
SA20825
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Plebo Aesdi Nael has discovered two vulnerabilities in Microsoft Windows, which can be exploited by malicious people to disclose potentially sensitive information and potentially compromise a user's system. [Read More]


Microsoft Windows Hyperlink Object Library Vulnerabilities
Vendor Patch. Secunia Advisory 29 of 40 in 2006. 41,995 views.
Release Date:
2006-06-20
Secunia Advisory ID:
SA20748
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft JScript Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 30 of 40 in 2006. 13,527 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20620
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows TCP/IP Protocol Driver Buffer Overflow
Vendor Patch. Secunia Advisory 31 of 40 in 2006. 23,681 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20639
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows ART Image Handling Buffer Overflow
Vendor Patch. Secunia Advisory 32 of 40 in 2006. 13,562 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20605
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows RPC Mutual Authentication Vulnerability
Vendor Patch. Secunia Advisory 33 of 40 in 2006. 11,994 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20637
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to spoof a valid RPC server. [Read More]


Windows SMB Denial of Service and Privilege Escalation
Vendor Patch. Secunia Advisory 34 of 40 in 2006. 12,048 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20635
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Ruben Santamarta has reported two vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and gain escalated privileges. [Read More]


Microsoft Windows Routing and Remote Access Vulnerabilities
Vendor Patch. Secunia Advisory 35 of 40 in 2006. 19,014 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20630
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people or users to compromise a vulnerable system. [Read More]


Microsoft Windows "itss.dll" Heap Corruption Vulnerability
Unpatched. Secunia Advisory 36 of 40 in 2006. 17,517 views.
Release Date:
2006-05-10
Secunia Advisory ID:
SA20061
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Rubén Santamarta has discovered a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Distributed Transaction Coordinator Two Vulnerabilities
Vendor Patch. Secunia Advisory 37 of 40 in 2006. 37,297 views.
Release Date:
2006-05-09
Secunia Advisory ID:
SA20000
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft Windows Explorer COM Object Handling Vulnerability
Vendor Patch. Secunia Advisory 38 of 40 in 2006. 17,062 views.
Release Date:
2006-04-11
Secunia Advisory ID:
SA19606
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Player Plug-in EMBED Element Buffer Overflow
Vendor Patch. Secunia Advisory 39 of 40 in 2006. 25,343 views.
Release Date:
2006-02-14
Secunia Advisory ID:
SA18852
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Windows Media Player plug-in, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Embedded Web Fonts Code Execution Vulnerability
Vendor Patch. Secunia Advisory 40 of 40 in 2006. 18,454 views.
Release Date:
2006-01-10
Secunia Advisory ID:
SA18365
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF "SETABORTPROC" Arbitrary Code Execution
Vendor Patch. Secunia Advisory 1 of 38 in 2005. 168,160 views.
Release Date:
2005-12-28
Secunia Advisory ID:
SA18255
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Kernel APC Queue List Handling Privilege Escalation
Vendor Patch. Secunia Advisory 2 of 38 in 2005. 13,725 views.
Release Date:
2005-12-13
Secunia Advisory ID:
SA15821
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows UPnP GetDeviceList Denial of Service
Unpatched. Secunia Advisory 3 of 38 in 2005. 19,287 views.
Release Date:
2005-11-17
Secunia Advisory ID:
SA17595
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
Winny Thomas has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows WMF/EMF File Rendering Arbitrary Code Execution
Vendor Patch. Secunia Advisory 4 of 38 in 2005. 27,937 views.
Release Date:
2005-11-08
Secunia Advisory ID:
SA17498
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Plug-and-Play Service Buffer Overflows
Vendor Patch. Secunia Advisory 5 of 38 in 2005. 15,625 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17166
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
eEye Digital Security has reported some vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges, or by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows Shell and Web View Three Vulnerabilities
Vendor Patch. Secunia Advisory 6 of 38 in 2005. 15,319 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17168
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows DirectShow AVI Handling Vulnerability
Vendor Patch. Secunia Advisory 7 of 38 in 2005. 20,726 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17160
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has been reported a vulnerability in Microsoft Windows DirectShow, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Collaboration Data Objects Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 38 in 2005. 17,350 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17167
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Gary O'leary-Steele has reported a vulnerability in Microsoft Windows and Microsoft Exchange 2000 Server, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows MSDTC and COM+ Vulnerabilities
Vendor Patch. Secunia Advisory 9 of 38 in 2005. 24,597 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17161
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges, or by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows Client Service for NetWare Buffer Overflow
Vendor Patch. Secunia Advisory 10 of 38 in 2005. 15,584 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17165
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users, or by malicious people to compromise a vulnerable system. [Read More]


Windows Registry Editor Utility String Concealment Weakness
Unpatched. Secunia Advisory 11 of 38 in 2005. 72,765 views.
Release Date:
2005-08-24
Secunia Advisory ID:
SA16560
Solution Status:
Unpatched
Criticality:
Impact:
Spoofing
Where:
Local system
Short Description:
Igor Franchuk has discovered a weakness in Microsoft Windows, which can be exploited to hide certain information. [Read More]


Microsoft Windows COM Object Instantiation Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 12 of 38 in 2005. 59,175 views.
Release Date:
2005-08-18
Secunia Advisory ID:
SA16480
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Internet Explorer, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Telephony Service Vulnerability
Vendor Patch. Secunia Advisory 13 of 38 in 2005. 16,609 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16354
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Print Spooler Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 14 of 38 in 2005. 27,213 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16356
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows Plug-and-Play Service Buffer Overflow
Vendor Patch. Secunia Advisory 15 of 38 in 2005. 26,097 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16372
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
ISS X-Force has reported a vulnerability in Microsoft Windows, which can be exploited by malicious users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Two Kerberos Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 38 in 2005. 13,718 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16368
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Exposure of sensitive information
DoS
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to cause a DoS (Denial of Service), reveal sensitive information, or impersonate other users. [Read More]


Microsoft Windows Unspecified USB Device Driver Vulnerability
Unpatched. Secunia Advisory 17 of 38 in 2005. 34,402 views.
Release Date:
2005-07-27
Secunia Advisory ID:
SA16210
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people with physical access to a vulnerable system to compromise it. [Read More]


Microsoft Windows Network Connections Service Denial of Service
Vendor Patch. Secunia Advisory 18 of 38 in 2005. 23,902 views.
Release Date:
2005-07-14
Secunia Advisory ID:
SA16065
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
bkbll has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Windows Remote Desktop Protocol Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 19 of 38 in 2005. 37,712 views.
Release Date:
2005-07-14
Secunia Advisory ID:
SA16071
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Tom Ferris has reported a vulnerability in Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Color Management Module Buffer Overflow
Vendor Patch. Secunia Advisory 20 of 38 in 2005. 28,713 views.
Release Date:
2005-07-12
Secunia Advisory ID:
SA16004
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Server Message Block Vulnerability
Vendor Patch. Secunia Advisory 21 of 38 in 2005. 18,588 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15694
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Agent Trusted Internet Content Spoofing Vulnerability
Vendor Patch. Secunia Advisory 22 of 38 in 2005. 14,469 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15689
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to spoof certain information and potentially trick a user into installing a malicious program. [Read More]


Microsoft Windows HTML Help Input Validation Vulnerability
Vendor Patch. Secunia Advisory 23 of 38 in 2005. 17,506 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15683
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Step-by-Step Interactive Training Vulnerability
Vendor Patch. Secunia Advisory 24 of 38 in 2005. 15,918 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15669
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
iDEFENSE Labs has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Remote Desktop Protocol Private Key Disclosure
Unpatched. Secunia Advisory 25 of 38 in 2005. 29,403 views.
Release Date:
2005-06-06
Secunia Advisory ID:
SA15605
Solution Status:
Unpatched
Criticality:
Impact:
Hijacking
Where:
From remote
Short Description:
Massimiliano Montoro has reported a security issue in Microsoft Windows, which can be exploited by malicious people to conduct MitM (Man-in-the-Middle) attacks. [Read More]


Microsoft Windows Explorer Web View Script Insertion Vulnerability
Vendor Patch. Secunia Advisory 26 of 38 in 2005. 25,193 views.
Release Date:
2005-04-20
Secunia Advisory ID:
SA15017
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
GreyMagic has discovered a vulnerability in Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 27 of 38 in 2005. 15,022 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14927
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in the Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Microsoft Windows Shell MSHTA Script Execution Vulnerability
Vendor Patch. Secunia Advisory 28 of 38 in 2005. 19,021 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14909
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Message Queuing Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 29 of 38 in 2005. 124,144 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14921
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows EMF File Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 30 of 38 in 2005. 19,423 views.
Release Date:
2005-03-18
Secunia Advisory ID:
SA14631
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Hongzhen Zhou has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows TCP/IP Implementation Vulnerabilities
Vendor Patch. Secunia Advisory 31 of 38 in 2005. 30,015 views.
Release Date:
2005-03-07
Secunia Advisory ID:
SA14512
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows SMB Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 32 of 38 in 2005. 17,595 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA11634
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows OLE / COM Two Vulnerabilities
Vendor Patch. Secunia Advisory 33 of 38 in 2005. 15,156 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14193
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Cesar Cerrudo has reported two vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows License Logging Service Buffer Overflow
Vendor Patch. Secunia Advisory 34 of 38 in 2005. 14,764 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14192
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported a vulnerability in some versions of Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Hyperlink Object Library Buffer Overflow
Vendor Patch. Secunia Advisory 35 of 38 in 2005. 15,370 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14195
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Anna Hollingzworth has reported a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Drag and Drop Vulnerability
Vendor Patch. Secunia Advisory 36 of 38 in 2005. 19,042 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14190
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Anonymous Named Pipe Connection Information Disclosure
Vendor Patch. Secunia Advisory 37 of 38 in 2005. 17,840 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14189
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Where:
From local network
Short Description:
Jean-Baptiste Marchand has reported a weakness in Microsoft Windows 2000 and XP, which can be exploited by malicious people to gain knowledge of certain system information. [Read More]


Windows Registry Key Locking Denial of Service
Unpatched. Secunia Advisory 38 of 38 in 2005. 21,350 views.
Release Date:
2005-01-31
Secunia Advisory ID:
SA14061
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Vladimir Kraljevic has reported a security issue in Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Multiple Vulnerabilities
Partial Fix. Secunia Advisory 1 of 29 in 2004. 49,141 views.
Release Date:
2004-12-25
Secunia Advisory ID:
SA13645
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Flashsky has reported some vulnerabilities in Microsoft Windows, allowing malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]


Microsoft Windows Kernel and LSASS Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 29 in 2004. 17,497 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13465
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Cesar Cerrudo has reported two vulnerabilities in Microsoft Windows, allowing malicious, local users to escalate their privileges. [Read More]


Microsoft Word for Windows Converter Buffer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 3 of 29 in 2004. 18,805 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13462
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows WINS "Name" Validation Vulnerability
Vendor Patch. Secunia Advisory 4 of 29 in 2004. 16,085 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13466
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported two vulnerabilities in Microsoft Windows, allowing malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows HyperTerminal Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 5 of 29 in 2004. 17,961 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13464
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Brett Moore has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows WINS Replication Packet Handling Vulnerability
Vendor Patch. Secunia Advisory 6 of 29 in 2004. 21,533 views.
Release Date:
2004-11-29
Secunia Advisory ID:
SA13328
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Nicolas Waisman has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Shell and Program Group Converter Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 29 in 2004. 17,302 views.
Release Date:
2004-10-13
Secunia Advisory ID:
SA12808
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows NetDDE Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 29 in 2004. 17,000 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12803
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
John Heasman has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows NNTP Component Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 29 in 2004. 12,016 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12802
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Core Security Technologies has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WebDAV XML Message Handler Denial of Service
Vendor Patch. Secunia Advisory 10 of 29 in 2004. 18,169 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12801
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Amit Klein has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 11 of 29 in 2004. 19,753 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12804
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited to cause a DoS (Denial of Service), gain escalated privileges, or compromise a vulnerable system. [Read More]


Windows Packet Fragmentation Handling Denial of Service Vulnerability
Unpatched. Secunia Advisory 12 of 29 in 2004. 16,821 views.
Release Date:
2004-10-01
Secunia Advisory ID:
SA12670
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Gandalf The White has reported a variant of some known vulnerabilities in Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows POSIX Subsystem Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 13 of 29 in 2004. 13,462 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12062
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Rafal Wojtczuk has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows 2000 Utility Manager Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 14 of 29 in 2004. 12,712 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12051
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Cesar Cerrudo has discovered a vulnerability in Microsoft Windows 2000, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows / Internet Explorer File Download Extension Spoofing
Vendor Patch. Secunia Advisory 15 of 29 in 2004. 18,315 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12058
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Microsoft has issued an update for Microsoft Windows. This fixes a vulnerability, allowing malicious web sites to spoof the extension of files being downloaded. [Read More]


Microsoft Windows Task Scheduler Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 16 of 29 in 2004. 17,678 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12060
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued an update for Windows. This fixes a vulnerability, allowing malicious websites to execute arbitrary code on a vulnerable system. [Read More]


Microsoft Windows showHelp and HTML Help Vulnerabilities
Vendor Patch. Secunia Advisory 17 of 29 in 2004. 16,373 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12059
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Microsoft has issued an update for Windows. This fixes two vulnerabilities, allowing malicious websites to compromise a vulnerable system. [Read More]


Microsoft Java Virtual Machine Cross-Site Communication Vulnerability
Unpatched. Secunia Advisory 18 of 29 in 2004. 20,041 views.
Release Date:
2004-07-12
Secunia Advisory ID:
SA12047
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Marc Schoenefeld has reported a vulnerability in Microsoft Java Virtual Machine, allowing Java applets originating from different domains to communicate. [Read More]


Microsoft DirectPlay Packet Validation Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 19 of 29 in 2004. 15,783 views.
Release Date:
2004-06-08
Secunia Advisory ID:
SA11802
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
John Lampe has discovered a vulnerability in Microsoft DirectPlay, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Windows 2000 Expired Password Domain Authentication Security Issue
Vendor Patch. Secunia Advisory 20 of 29 in 2004. 16,013 views.
Release Date:
2004-06-01
Secunia Advisory ID:
SA11746
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From local network
Short Description:
A security issue has been discovered in Windows 2000, which may allow bypassing certain security restrictions. [Read More]


Microsoft Windows "desktop.ini" Arbitrary File Execution Vulnerability
Vendor Patch. Secunia Advisory 21 of 29 in 2004. 40,112 views.
Release Date:
2004-05-18
Secunia Advisory ID:
SA11633
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Roozbeh Afrasiabi has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Windows Explorer / Internet Explorer Long Share Name Buffer Overflow
Vendor Patch. Secunia Advisory 22 of 29 in 2004. 73,432 views.
Release Date:
2004-04-26
Secunia Advisory ID:
SA11482
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Rodrigo Gutierrez has discovered a vulnerability in Windows and Internet Explorer, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows 14 Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 29 in 2004. 36,315 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11064
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Microsoft has acknowledged 14 vulnerabilities in the Windows operating system, where the most serious can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Jet Database Engine Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 24 of 29 in 2004. 15,867 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11068
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Matt Thompson has discovered a vulnerability in Microsoft Jet Database Engine, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows RPC/DCOM Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 29 in 2004. 18,109 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11065
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Microsoft has issued an advisory regarding multiple vulnerabilities in RPC/DCOM, where the most serious can potentially lead to a system compromise. [Read More]


Microsoft Windows 2000 Server Media Services Denial of Service
Vendor Patch. Secunia Advisory 26 of 29 in 2004. 13,248 views.
Release Date:
2004-03-09
Secunia Advisory ID:
SA11077
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Qualys has discovered a vulnerability in Microsoft Media Services, allowing malicious people to cause a Denial of Service against the Media Services. [Read More]


Microsoft Windows WINS Server Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 27 of 29 in 2004. 15,410 views.
Release Date:
2004-02-10
Secunia Advisory ID:
SA10835
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Qualys has discovered a vulnerability in certain versions of Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft Windows ASN.1 Library Integer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 28 of 29 in 2004. 28,841 views.
Release Date:
2004-02-10
Secunia Advisory ID:
SA10759
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has discovered some vulnerabilities in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Data Access Components Broadcast Reply Buffer Overflow
Vendor Patch. Secunia Advisory 29 of 29 in 2004. 16,968 views.
Release Date:
2004-01-13
Secunia Advisory ID:
SA10616
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has reported a vulnerability in MDAC (Microsoft Data Access Components), which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Workstation Service Buffer Overflow
Vendor Patch. Secunia Advisory 1 of 33 in 2003. 17,724 views.
Release Date:
2003-11-11
Secunia Advisory ID:
SA10193
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has issued patches for Windows 2000 and XP. These fix a vulnerability in the Workstation service, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft HTML Help Control Privilege Escalation Vulnerability
Unpatched. Secunia Advisory 2 of 33 in 2003. 19,663 views.
Release Date:
2003-10-27
Secunia Advisory ID:
SA10066
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft HTML Help, which can be exploited by malicious, local users to escalate their privileges. [Read More]


Microsoft Windows Buffer Overflow in Messenger Service
Vendor Patch. Secunia Advisory 3 of 33 in 2003. 23,018 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10012
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a buffer overflow vulnerability in Messenger Service, which could lead to execution of arbitrary code. [Read More]


Microsoft Windows 2000 Buffer Overflow in Windows Troubleshooter ActiveX Control
Vendor Patch. Secunia Advisory 4 of 33 in 2003. 12,359 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10011
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to fix a vulnerability in the Windows Trouble Shooter ActiveX Control. This can be exploited by malicious HTML documents like web sites and emails to compromise a user's system. [Read More]


Microsoft Windows May Allow Installation of Arbitrary ActiveX Controls
Vendor Patch. Secunia Advisory 5 of 33 in 2003. 17,194 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to fix a vulnerability in Microsoft Windows (Internet Explorer) allowing malicious HTML documents like web pages or emails to install arbitrary ActiveX controls. [Read More]


Windows RPC Race Condition Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 6 of 33 in 2003. 19,684 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA9978
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
ISS X-Force has reported a vulnerability in some versions of Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Buffer Overflow in ListBox and ComboBox Control
Vendor Patch. Secunia Advisory 7 of 33 in 2003. 15,028 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10014
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Microsoft has issued patches to fix a vulnerability in Microsoft Windows allowing malicious users to escalate their privileges. [Read More]


Microsoft Windows Help and Support Center Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 33 in 2003. 16,945 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10013
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a vulnerability in the Help and Support Center. [Read More]


Windows Message Queuing Service Heap Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 33 in 2003. 14,789 views.
Release Date:
2003-10-11
Secunia Advisory ID:
SA9991
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Windows 2000, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Unauthorised Thread Termination
Unpatched. Secunia Advisory 10 of 33 in 2003. 18,532 views.
Release Date:
2003-10-03
Secunia Advisory ID:
SA9921
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Windows, which can be exploited by malicious, local users to terminate certain privileged programs. [Read More]


Microsoft Windows TCP Packet Information Disclosure
Unpatched. Secunia Advisory 11 of 33 in 2003. 17,203 views.
Release Date:
2003-09-22
Secunia Advisory ID:
SA9799
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Where:
From remote
Short Description:
A vulnerability has been identified in the handling of TCP packets in Microsoft Windows 2000 and Windows XP, which potentially can expose sensitive information. [Read More]


Microsoft Windows RPCSS Service DCOM Interface Vulnerabilities
Vendor Patch. Secunia Advisory 12 of 33 in 2003. 34,078 views.
Release Date:
2003-09-10
Secunia Advisory ID:
SA9692
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Three vulnerabilities have been identified in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]


Microsoft Windows NetBIOS Random Memory Content Disclosure
Vendor Patch. Secunia Advisory 13 of 33 in 2003. 13,845 views.
Release Date:
2003-09-03
Secunia Advisory ID:
SA9665
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From local network
Short Description:
A vulnerability has been discovered in all supported Windows versions except Windows ME, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]


Microsoft MDAC Buffer Overflow
Vendor Patch. Secunia Advisory 14 of 33 in 2003. 14,387 views.
Release Date:
2003-08-20
Secunia Advisory ID:
SA9579
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has issued a patch for MDAC due to a vulnerability which allows malicious people to cause a buffer overflow. [Read More]


Microsoft Windows DirectX Remotely Exploitable Buffer Overflow
Vendor Patch. Secunia Advisory 15 of 33 in 2003. 23,986 views.
Release Date:
2003-07-23
Secunia Advisory ID:
SA9335
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in DirectX allowing malicious people to gain system access. [Read More]


Windows RPC DCOM Interface Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 16 of 33 in 2003. 21,884 views.
Release Date:
2003-07-16
Secunia Advisory ID:
SA9287
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been identified in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows SMTP Service Invalid Timestamp Denial of Service
Vendor Patch. Secunia Advisory 17 of 33 in 2003. 11,433 views.
Release Date:
2003-07-16
Secunia Advisory ID:
SA9286
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been identified in Windows 2000 Server and Exchange Server 2000, which can be exploited by malicious people to cause a DoS (Denial of Service) on the SMTP service. [Read More]


Windows SMB Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 18 of 33 in 2003. 13,771 views.
Release Date:
2003-07-09
Secunia Advisory ID:
SA9225
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been identified in some versions of Windows, which can be exploited by malicious users to cause a DoS (Denial of Service) on a vulnerable system and potentially compromise it. [Read More]


Windows 2000 Utility Manager Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 19 of 33 in 2003. 10,609 views.
Release Date:
2003-07-09
Secunia Advisory ID:
SA9224
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in Windows 2000, which can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]


Windows 2000 ShellExecute API Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 20 of 33 in 2003. 11,861 views.
Release Date:
2003-07-03
Secunia Advisory ID:
SA9175
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Windows 2000, which can be exploited by malicious people to crash applications and potentially compromise a vulnerable system. [Read More]


Windows NetMeeting Directory Traversal Vulnerability
Vendor Patch. Secunia Advisory 21 of 33 in 2003. 15,911 views.
Release Date:
2003-07-02
Secunia Advisory ID:
SA9170
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in Windows NetMeeting, which can be exploited by malicious people to overwrite arbitrary files on a user's system with the privileges of the user. [Read More]


Windows 2000 Server Active Directory Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 22 of 33 in 2003. 12,157 views.
Release Date:
2003-07-02
Secunia Advisory ID:
SA9171
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been identified in Windows 2000 Server, which can be exploited by malicious people to cause a DoS (Denial of Service) on a vulnerable system. [Read More]


Microsoft Windows HTML Converter Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 23 of 33 in 2003. 16,175 views.
Release Date:
2003-06-25
Secunia Advisory ID:
SA9113
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been identified in all supported Windows versions, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Services ISAPI Extension Execution of Arbitrary Code
Vendor Patch. Secunia Advisory 24 of 33 in 2003. 11,579 views.
Release Date:
2003-05-28
Secunia Advisory ID:
SA8883
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in some versions of Microsoft Windows, which can be exploited by a malicious person to execute arbitrary code on a vulnerable system. [Read More]


Windows NTFS File System Information Disclosure
Unpatched. Secunia Advisory 25 of 33 in 2003. 18,343 views.
Release Date:
2003-04-22
Secunia Advisory ID:
SA8635
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
Where:
Local system
Short Description:
Matthew Murphy has reported a security issue in Windows, which potentially can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]


Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 26 of 33 in 2003. 10,860 views.
Release Date:
2003-04-16
Secunia Advisory ID:
SA8609
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in some versions of Windows, which can be exploited by malicious users on a vulnerable system to escalate their privileges. [Read More]


Microsoft Virtual Machine Bytecode Verifier Vulnerability
Vendor Patch. Secunia Advisory 27 of 33 in 2003. 16,028 views.
Release Date:
2003-04-09
Secunia Advisory ID:
SA8559
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability identified in Microsoft VM (Virtual Machine) shipped with almost all versions of Windows (except some versions of Windows XP) can be exploited by malicious people to compromise a user's system. [Read More]


Windows Script Engine Heap Overflow
Vendor Patch. Secunia Advisory 28 of 33 in 2003. 11,197 views.
Release Date:
2003-03-19
Secunia Advisory ID:
SA8346
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability identified in all currently supported versions of Microsoft Windows can be exploited by malicious people to compromise a user's system. [Read More]


Windows 2000/XP PostMessage Password Disclosure
Unpatched. Secunia Advisory 29 of 33 in 2003. 15,043 views.
Release Date:
2003-03-18
Secunia Advisory ID:
SA8329
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Where:
Local system
Short Description:
An information disclosure vulnerability has been identified in Windows 2000 and Windows XP, which can be exploited by a malicious, local user to gain knowledge of sensitive information. [Read More]


Windows buffer overflow in riched20.dll
Unpatched. Secunia Advisory 30 of 33 in 2003. 13,276 views.
Release Date:
2003-02-20
Secunia Advisory ID:
SA8099
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability in Windows can be exploited by malicious people to crash certain applications on a user's system. [Read More]


Microsoft Windows Terminal Server Denial of Service
Unpatched. Secunia Advisory 31 of 33 in 2003. 13,553 views.
Release Date:
2003-01-28
Secunia Advisory ID:
SA7959
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
Windows 2000 and XP systems running as terminal servers can be crashed by local users. This can be done via RDP (Remote Desktop Protocol) or Citrix ICA Clients. [Read More]


Microsoft Windows buffer overflow in Locator Service
Vendor Patch. Secunia Advisory 32 of 33 in 2003. 10,778 views.
Release Date:
2003-01-23
Secunia Advisory ID:
SA7926
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued a security bulletin regarding a buffer overflow in the Locator Service. The Locater service only runs by default on Windows NT and 2000 domain controllers. [Read More]


Microsoft Windows crashes on invalid font file
Unpatched. Secunia Advisory 33 of 33 in 2003. 13,094 views.
Release Date:
2003-01-07
Secunia Advisory ID:
SA7824
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Microsoft Windows 2000 and XP does not handle fonts correctly. Malformed font files can bring the system to an immediate reboot if viewed in the font viewer (fontview). [Read More]


Microsoft Windows Certificate Chain vulnerability
Unpatched. Secunia Advisory 1 of 16 in 2002. 18,586 views.
Release Date:
2002-12-30
Secunia Advisory ID:
SA7793
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft Windows is flawed in the way it trusts certificates. Microsoft Windows File Protection will automatically trust software that has been digitally signed with certificates rooted in any of the Trusted Root Certification Authorities. [Read More]


Microsoft Windows Virtual Machine multiple vulnerabilities
Vendor Patch. Secunia Advisory 2 of 16 in 2002. 11,924 views.
Release Date:
2002-12-12
Secunia Advisory ID:
SA7687
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued a new build of their virtual machine, it fixes a number of issues, some which previously has been published by Secunia. [Read More]


Microsoft Windows SMB signing bypass
Vendor Patch. Secunia Advisory 3 of 16 in 2002. 11,648 views.
Release Date:
2002-12-12
Secunia Advisory ID:
SA7689
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
Where:
From local network
Short Description:
Microsoft Windows 2000 and XP supports digital signing of SMB traffic. However it is possible for malicious persons to downgrade / turn off signing even if the network adminstrator has required this. [Read More]


Microsoft Windows Window Messaging Privilege Escalation Vulnerability
Partial Fix. Secunia Advisory 4 of 16 in 2002. 12,261 views.
Release Date:
2002-12-12
Secunia Advisory ID:
SA7688
Solution Status:
Partial Fix
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in Microsoft Windows, which can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]


Microsoft vulnerabilities in Internet Explorer, Outlook, Outlook Express and Internet Information Server (IIS)
Vendor Patch. Secunia Advisory 5 of 16 in 2002. 21,783 views.
Release Date:
2002-11-20
Secunia Advisory ID:
SA7567
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Remote Data Services (RDS) which is part of Microsoft Data Access Components (MDAC) contains a buffer overflow allowing attackers to run arbitrary code. [Read More]


Microsoft Windows 2000 insecure permissions
Unpatched. Secunia Advisory 6 of 16 in 2002. 9,464 views.
Release Date:
2002-10-31
Secunia Advisory ID:
SA7421
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Windows 2000 provides everyone full acccess to the system root (usually c:\), this could be abused to lauch trojan horse applications against other local users. [Read More]


Microsoft PPTP Implementation Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 7 of 16 in 2002. 10,078 views.
Release Date:
2002-10-31
Secunia Advisory ID:
SA7420
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Windows 2000 pre SP3 SNMP DoS issue
Vendor Patch. Secunia Advisory 8 of 16 in 2002. 7,771 views.
Release Date:
2002-10-22
Secunia Advisory ID:
SA7366
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Microsoft Windows 2000 which does not have Service Pack 3 installed are vulnerable to a Denial of Service attack. [Read More]


Microsoft Windows RPC Endpoint Mapper Denial of Service
Vendor Patch. Secunia Advisory 9 of 16 in 2002. 11,780 views.
Release Date:
2002-10-19
Secunia Advisory ID:
SA7347
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been identified in Windows, which can be exploited by a malicious person to cause a DoS (Denial of Service) on some services on a vulnerable system. [Read More]


Microsoft Windows HTML Help facility buffer overflow
Vendor Patch. Secunia Advisory 10 of 16 in 2002. 6,824 views.
Release Date:
2002-10-03
Secunia Advisory ID:
SA7199
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
The HTML Help facility contains a number of vulnerabilities, which possibly could allow attackers to gain system access. [Read More]


Microsoft PPTP Client and Server Pre-Authentication Buffer Overflow
Vendor Patch. Secunia Advisory 11 of 16 in 2002. 7,566 views.
Release Date:
2002-09-26
Secunia Advisory ID:
SA7164
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft issues patches to Virtual Machine vulnerabilities
Vendor Patch. Secunia Advisory 12 of 16 in 2002. 7,149 views.
Release Date:
2002-09-19
Secunia Advisory ID:
SA7129
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to three vulnerabilities in VM JDBC. [Read More]


Microsoft RDP / Terminal Services uses weak encryption - patches issued
Vendor Patch. Secunia Advisory 13 of 16 in 2002. 14,414 views.
Release Date:
2002-09-18
Secunia Advisory ID:
SA7118
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From remote
Short Description:
Microsoft Remote Dekstop Protocol uses weak encryption and bad security practise. [Read More]


Microsoft Windows 16-bit Application Execution Restriction Bypass
Partial Fix. Secunia Advisory 14 of 16 in 2002. 19,015 views.
Release Date:
2002-09-18
Secunia Advisory ID:
SA7127
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Where:
Local system
Short Description:
Torbjörn Hovmark has reported a security issue in Windows, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]


Microsoft: Certificate Validation Flaw Enables Identity Spoofing
Vendor Patch. Secunia Advisory 15 of 16 in 2002. 12,942 views.
Release Date:
2002-09-05
Secunia Advisory ID:
SA7072
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Microsoft admits that a critical flaw exists in its Crypto API which evaluates certificates. [Read More]


Microsoft Windows Filesharing Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 16 of 16 in 2002. 1,198 views.
Release Date:
2002-09-02
Secunia Advisory ID:
SA9
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
[Read More]