Secunia Logo  


Secunia PSI WorldMap
 
Vulnerability Report: Microsoft Windows 2000 Advanced Server
This vulnerability report for Microsoft Windows 2000 Advanced Server contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Microsoft Windows 2000 Advanced Server then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2009
2.2. Statistics for 2008
2.3. Statistics for 2007
2.4. Statistics for 2006
2.5. Statistics for 2005
2.6. Statistics for 2004
2.7. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2009
3.2. List for 2008
3.3. List for 2007
3.4. List for 2006
3.5. List for 2005
3.6. List for 2004
3.7. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Microsoft

Product Link N/A

Affected By 239 Secunia advisories
260 Vulnerabilities

Monitor Product Receive alerts for this product

Unpatched 10% (25 of 239 Secunia advisories)

Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Microsoft Windows 2000 Advanced Server, with all vendor patches applied, is rated Moderately critical .




239 Secunia Advisories in 2003-2009
Secunia has issued a total of 239 Secunia advisories in 2003-2009 for Microsoft Windows 2000 Advanced Server. Currently, 10% (25 out of 239) are marked as unpatched with the most severe being rated Moderately critical

More information about the specific Secunia advisories affecting Microsoft Windows 2000 Advanced Server can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



Microsoft Windows Win32k Kernel-Mode Driver Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 30 in 2009. 5,660 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37318
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory Denial of Service
Vendor Patch. Secunia Advisory 2 of 30 in 2009. 940 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37304
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows License Logging Server Buffer Overflow
Vendor Patch. Secunia Advisory 3 of 30 in 2009. 846 views.
Release Date:
2009-11-10
Secunia Advisory ID:
SA37311
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Privilege Escalation and Denial of Service
Vendor Patch. Secunia Advisory 4 of 30 in 2009. 1,069 views.
Release Date:
2009-10-14
Secunia Advisory ID:
SA37001
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or to potentially gain escalated privileges. [Read More]


Microsoft Windows CryptoAPI Two Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 30 in 2009. 1,050 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36999
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks. [Read More]


Microsoft Windows ActiveX Controls ATL "OleLoadFromStream()" Vulnerability
Vendor Patch. Secunia Advisory 6 of 30 in 2009. 2,261 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36997
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]


Microsoft Windows Media Runtime Code Execution Vulnerability
Vendor Patch. Secunia Advisory 7 of 30 in 2009. 1,158 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA36938
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Indexing Service ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 8 of 30 in 2009. 936 views.
Release Date:
2009-10-13
Secunia Advisory ID:
SA37000
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a user's system. [Read More]


Microsoft JScript Scripting Engine Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 9 of 30 in 2009. 1,474 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36551
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Media Format Two Code Execution Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 30 in 2009. 2,945 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36596
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows Media Format, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows 2000 / XP TCP/IP Window Size Denial of Service Vulnerabilities
Unpatched. Secunia Advisory 11 of 30 in 2009. 4,466 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36597
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows 2000 and Windows XP, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows DHTML Editing ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 12 of 30 in 2009. 1,385 views.
Release Date:
2009-09-08
Secunia Advisory ID:
SA36592
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Remote Desktop Connection Two Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 30 in 2009. 6,045 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36229
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows and Microsoft Remote Desktop Connection Client for Mac, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Telnet NTLM Credential Reflection Vulnerability
Vendor Patch. Secunia Advisory 14 of 30 in 2009. 1,610 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36222
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows AVI Media File Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 15 of 30 in 2009. 1,591 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36206
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Message Queuing Service Privilege Escalation
Vendor Patch. Secunia Advisory 16 of 30 in 2009. 1,543 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36214
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows WINS Service Two Vulnerabilities
Vendor Patch. Secunia Advisory 17 of 30 in 2009. 1,559 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36213
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Various Components ATL Vulnerabilities
Vendor Patch. Secunia Advisory 18 of 30 in 2009. 7,824 views.
Release Date:
2009-08-11
Secunia Advisory ID:
SA36187
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in various Windows components, which can be exploited by malicious people to bypass security features or compromise a user's system. [Read More]


Windows Embedded OpenType Font Engine Two Vulnerabilities
Vendor Patch. Secunia Advisory 19 of 30 in 2009. 6,932 views.
Release Date:
2009-07-14
Secunia Advisory ID:
SA35773
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 30 in 2009. 2,315 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35372
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Active Directory Two Vulnerabilities
Vendor Patch. Secunia Advisory 21 of 30 in 2009. 2,117 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35355
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows RPC Marshalling Engine Vulnerability
Vendor Patch. Secunia Advisory 22 of 30 in 2009. 4,309 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35373
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]


Microsoft Windows Print Spooler Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 30 in 2009. 3,056 views.
Release Date:
2009-06-09
Secunia Advisory ID:
SA35365
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
System access
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to disclose sensitive information, and by malicious users and malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows "SystemParametersInfo()" Privilege Escalation
Vendor Patch. Secunia Advisory 24 of 30 in 2009. 2,511 views.
Release Date:
2009-06-03
Secunia Advisory ID:
SA35323
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft DirectShow QuickTime Parsing Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 30 in 2009. 8,230 views.
Release Date:
2009-05-29
Secunia Advisory ID:
SA35268
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows HTTP Services Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 30 in 2009. 7,796 views.
Release Date:
2009-04-14
Secunia Advisory ID:
SA34677
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to conduct spoofing attacks or compromise a user's system. [Read More]


Microsoft DirectShow MJPEG Decompression Vulnerability
Vendor Patch. Secunia Advisory 27 of 30 in 2009. 3,746 views.
Release Date:
2009-04-14
Secunia Advisory ID:
SA34665
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft DirectX, which can be exploited by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows SChannel Authentication Bypass
Vendor Patch. Secunia Advisory 28 of 30 in 2009. 6,465 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34215
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security mechanisms. [Read More]


Microsoft Windows Multiple Kernel Vulnerabilities
Vendor Patch. Secunia Advisory 29 of 30 in 2009. 5,311 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34117
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to potentially compromise a user's system. [Read More]


Microsoft Windows DNS / WINS Multiple Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 30 in 2009. 3,419 views.
Release Date:
2009-03-10
Secunia Advisory ID:
SA34217
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to poison a DNS cache and conduct spoofing attacks. [Read More]


Microsoft Windows WordPad / Office Text Converters Vulnerabilities
Vendor Patch. Secunia Advisory 1 of 30 in 2008. 9,844 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA32997
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows GDI Image Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 30 in 2008. 8,959 views.
Release Date:
2008-12-09
Secunia Advisory ID:
SA33020
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]


Microsoft Windows SMB Authentication Credential Replay Vulnerability
Vendor Patch. Secunia Advisory 3 of 30 in 2008. 8,085 views.
Release Date:
2008-11-11
Secunia Advisory ID:
SA32633
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Spoofing
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to bypass certain security features. [Read More]


Microsoft Windows Path Canonicalisation Vulnerability
Vendor Patch. Secunia Advisory 4 of 30 in 2008. 23,018 views.
Release Date:
2008-10-23
Secunia Advisory ID:
SA32326
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows IIS IPP Service Integer Overflow Vulnerability
Vendor Patch. Secunia Advisory 5 of 30 in 2008. 6,690 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32248
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows 2000 Message Queuing Service Vulnerability
Vendor Patch. Secunia Advisory 6 of 30 in 2008. 3,345 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32260
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 30 in 2008. 4,075 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32247
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Microsoft Windows SMB Buffer Underflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 30 in 2008. 4,758 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32249
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Active Directory Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 30 in 2008. 4,012 views.
Release Date:
2008-10-14
Secunia Advisory ID:
SA32242
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows SMB Packet Handling Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 30 in 2008. 9,515 views.
Release Date:
2008-09-16
Secunia Advisory ID:
SA31883
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows "IopfCompleteRequest" Integer Overflow Vulnerability
Unpatched. Secunia Advisory 11 of 30 in 2008. 6,516 views.
Release Date:
2008-09-10
Secunia Advisory ID:
SA31824
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Ruben Santamarta has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Color Management System Buffer Overflow
Vendor Patch. Secunia Advisory 12 of 30 in 2008. 8,165 views.
Release Date:
2008-08-12
Secunia Advisory ID:
SA31385
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Event System Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 30 in 2008. 5,966 views.
Release Date:
2008-08-12
Secunia Advisory ID:
SA31417
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft SQL Server and MSDE Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 14 of 30 in 2008. 9,941 views.
Release Date:
2008-07-08
Secunia Advisory ID:
SA30970
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
Where:
From local network
Short Description:
Four vulnerabilities have been reported in Microsoft SQL Server, which can be exploited by malicious users to gain escalated privileges. [Read More]


Microsoft Windows DNS Spoofing Vulnerabilities
Vendor Patch. Secunia Advisory 15 of 30 in 2008. 8,253 views.
Release Date:
2008-07-08
Secunia Advisory ID:
SA30925
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft DirectX MJPEG/SAMI File Processing Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 30 in 2008. 8,314 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30579
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Speech Recognition Security Issue
Vendor Patch. Secunia Advisory 17 of 30 in 2008. 6,761 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30578
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A security issue has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory LDAP Request Processing Denial of Service
Vendor Patch. Secunia Advisory 18 of 30 in 2008. 8,232 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30586
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people or malicious users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows WINS Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 19 of 30 in 2008. 6,086 views.
Release Date:
2008-06-10
Secunia Advisory ID:
SA30584
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 30 in 2008. 14,676 views.
Release Date:
2008-04-18
Secunia Advisory ID:
SA29867
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows hxvz.dll ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 21 of 30 in 2008. 9,162 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29714
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows GDI Image Parsing Buffer Overflows
Vendor Patch. Secunia Advisory 22 of 30 in 2008. 8,902 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29704
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows DNS Client Predictable Transaction ID Vulnerability
Vendor Patch. Secunia Advisory 23 of 30 in 2008. 8,176 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29696
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft VBScript/JScript Script Decoding Buffer Overflow
Vendor Patch. Secunia Advisory 24 of 30 in 2008. 9,289 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29712
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 25 of 30 in 2008. 8,483 views.
Release Date:
2008-04-08
Secunia Advisory ID:
SA29720
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows "NoDriveTypeAutoRun" Security Issue
Vendor Patch. Secunia Advisory 26 of 30 in 2008. 14,860 views.
Release Date:
2008-03-21
Secunia Advisory ID:
SA29458
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
Local system
Short Description:
CERT/CC has reported a security issue in Windows, which can be exploited by malicious people to bypass certain security settings. [Read More]


Microsoft Windows OLE Automation Memory Corruption
Vendor Patch. Secunia Advisory 27 of 30 in 2008. 10,071 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28902
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Active Directory Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 28 of 30 in 2008. 8,244 views.
Release Date:
2008-02-12
Secunia Advisory ID:
SA28764
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users and malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows LSASS Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 29 of 30 in 2008. 11,606 views.
Release Date:
2008-01-08
Secunia Advisory ID:
SA28341
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows TCP/IP Implementation Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 30 in 2008. 18,228 views.
Release Date:
2008-01-08
Secunia Advisory ID:
SA28297
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows Message Queuing Buffer Overflow
Vendor Patch. Secunia Advisory 1 of 26 in 2007. 8,992 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28051
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft DirectX SAMI/WAV/AVI File Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 26 in 2007. 13,540 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft DirectX, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Media Format Runtime ASF Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 3 of 26 in 2007. 14,280 views.
Release Date:
2007-12-11
Secunia Advisory ID:
SA28034
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
IBM X-Force has reported four vulnerabilities in Windows Media Format Runtime / Windows Media Services, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Web Proxy Auto-Discovery Feature Security Issue
Vendor Workaround. Secunia Advisory 4 of 26 in 2007. 17,922 views.
Release Date:
2007-12-04
Secunia Advisory ID:
SA27901
Solution Status:
Vendor Workaround
Criticality:
Impact:
Security Bypass
Exposure of sensitive information
Where:
From remote
Short Description:
A security issue has been reported in Microsoft's Web Proxy Auto-Discovery (WPAD) feature, which can be exploited by malicious people to conduct man-in-the-middle (MITM) attacks. [Read More]


Microsoft Windows DNS Service Cache Poisoning Vulnerability
Vendor Patch. Secunia Advisory 5 of 26 in 2007. 15,480 views.
Release Date:
2007-11-13
Secunia Advisory ID:
SA27584
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to poison the DNS cache. [Read More]


Microsoft Windows Kodak Image Viewer Code Execution
Vendor Patch. Secunia Advisory 6 of 26 in 2007. 15,322 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27092
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows 2000 RPC Authentication Information Disclosure
Vendor Patch. Secunia Advisory 7 of 26 in 2007. 11,292 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27153
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]


Microsoft Windows NNTP Response Handling Buffer Overflow
Vendor Patch. Secunia Advisory 8 of 26 in 2007. 14,066 views.
Release Date:
2007-10-09
Secunia Advisory ID:
SA27112
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
VeriSign iDefense Labs has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Agent ActiveX Control URL Handling Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 26 in 2007. 13,653 views.
Release Date:
2007-09-11
Secunia Advisory ID:
SA26753
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows 2000, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Graphics Rendering Engine Image Handling Vulnerability
Vendor Patch. Secunia Advisory 10 of 26 in 2007. 11,550 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26423
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Vector Markup Language Buffer Overflow
Vendor Patch. Secunia Advisory 11 of 26 in 2007. 14,246 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26409
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows OLE Automation "substringData()" Integer Overflow
Vendor Patch. Secunia Advisory 12 of 26 in 2007. 12,757 views.
Release Date:
2007-08-14
Secunia Advisory ID:
SA26449
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Active Directory Two Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 26 in 2007. 12,569 views.
Release Date:
2007-07-10
Secunia Advisory ID:
SA26002
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Windows Active Directory, which can be exploited by malicious users and malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Windows Secure Channel Digital Signature Parsing Vulnerability
Vendor Patch. Secunia Advisory 14 of 26 in 2007. 14,744 views.
Release Date:
2007-06-12
Secunia Advisory ID:
SA25620
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows DNS Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 15 of 26 in 2007. 23,654 views.
Release Date:
2007-04-13
Secunia Advisory ID:
SA24871
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Agent URL Parsing Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 16 of 26 in 2007. 16,481 views.
Release Date:
2007-04-10
Secunia Advisory ID:
SA22896
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Secunia Research has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Mapped Memory Insecure Permissions
Vendor Patch. Secunia Advisory 17 of 26 in 2007. 11,900 views.
Release Date:
2007-04-10
Secunia Advisory ID:
SA24834
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Animated Cursor Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 18 of 26 in 2007. 83,789 views.
Release Date:
2007-03-30
Secunia Advisory ID:
SA24659
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Directory Monitoring Information Disclosure Weakness
Unpatched. Secunia Advisory 19 of 26 in 2007. 16,409 views.
Release Date:
2007-02-23
Secunia Advisory ID:
SA24245
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Exposure of system information
Where:
Local system
Short Description:
3APA3A has discovered a weakness in Microsoft Windows, which can be exploited by malicious, local users to gain knowledge of certain information. [Read More]


Microsoft MFC OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 20 of 26 in 2007. 12,935 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24150
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows and Visual Studio, which can be exploited by malicious people to compromise a users system. [Read More]


Microsoft Windows OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 21 of 26 in 2007. 10,844 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24147
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft MDAC ADODB.Connection ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 22 of 26 in 2007. 19,441 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA22452
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Yag Kohha has reported a vulnerability in Microsoft Data Access Components, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows HTML Help ActiveX Control Vulnerability
Vendor Patch. Secunia Advisory 23 of 26 in 2007. 12,973 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24136
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft RichEdit OLE Dialog Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 24 of 26 in 2007. 13,782 views.
Release Date:
2007-02-13
Secunia Advisory ID:
SA24152
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows and Microsoft Office, which can be exploited by malicious people to compromise a users system. [Read More]


Microsoft Windows Vector Markup Language Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 26 in 2007. 34,555 views.
Release Date:
2007-01-09
Secunia Advisory ID:
SA23677
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system [Read More]


Microsoft XML Core Services Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 26 of 26 in 2007. 51,059 views.
Release Date:
2007-01-09
Secunia Advisory ID:
SA23655
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
DoS
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft XML Core Services, which can be exploited by malicious people to gain knowledge of sensitive information or potentially compromise a user's system. [Read More]


Microsoft Windows CSRSS Information Disclosure Vulnerability
Vendor Patch. Secunia Advisory 1 of 40 in 2006. 16,202 views.
Release Date:
2006-12-28
Secunia Advisory ID:
SA23491
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
DoS
Where:
Local system
Short Description:
Rubén Santamarta has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain knowledge of sensitive information. [Read More]


Windows Workstation Service NetrWkstaUserEnum Denial of Service
Unpatched. Secunia Advisory 2 of 40 in 2006. 19,800 views.
Release Date:
2006-12-26
Secunia Advisory ID:
SA23487
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
h07 has discovered a weakness in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows CSRSS MsgBox Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 3 of 40 in 2006. 30,088 views.
Release Date:
2006-12-22
Secunia Advisory ID:
SA23448
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Remote Installation Service Writable Path Vulnerability
Vendor Patch. Secunia Advisory 4 of 40 in 2006. 12,147 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23312
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Outlook Express Address Book Contact Record Vulnerability
Vendor Patch. Secunia Advisory 5 of 40 in 2006. 13,182 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23311
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Outlook Express, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows SNMP Service GetBulkRequest Memory Corruption
Vendor Patch. Secunia Advisory 6 of 40 in 2006. 15,833 views.
Release Date:
2006-12-12
Secunia Advisory ID:
SA23307
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Format Runtime ASX/ASF Parsing Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 40 in 2006. 18,927 views.
Release Date:
2006-12-08
Secunia Advisory ID:
SA22971
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Windows Media Format Runtime, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Print Spooler Denial of Service Vulnerability
Unpatched. Secunia Advisory 8 of 40 in 2006. 22,266 views.
Release Date:
2006-12-04
Secunia Advisory ID:
SA23196
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
h07 has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Client Service for Netware Vulnerabilities
Vendor Patch. Secunia Advisory 9 of 40 in 2006. 19,311 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22866
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and compromise a vulnerable system. [Read More]


Microsoft Windows Agent ActiveX Control Buffer Overflow
Vendor Patch. Secunia Advisory 10 of 40 in 2006. 18,640 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22878
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Workstation Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 11 of 40 in 2006. 15,528 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22883
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Active Directory Unspecified Denial of Service
Unpatched. Secunia Advisory 12 of 40 in 2006. 16,218 views.
Release Date:
2006-11-14
Secunia Advisory ID:
SA22871
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
GLEG has reported a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows GDI Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 13 of 40 in 2006. 20,923 views.
Release Date:
2006-11-06
Secunia Advisory ID:
SA22668
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]


Microsoft XMLHTTP ActiveX Control Code Execution Vulnerability
Vendor Patch. Secunia Advisory 14 of 40 in 2006. 72,644 views.
Release Date:
2006-11-04
Secunia Advisory ID:
SA22687
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft XML Core Services, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Shell Code Execution Vulnerability
Vendor Patch. Secunia Advisory 15 of 40 in 2006. 37,868 views.
Release Date:
2006-09-28
Secunia Advisory ID:
SA22159
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
H D Moore has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Vector Graphics Rendering Library Buffer Overflow
Vendor Patch. Secunia Advisory 16 of 40 in 2006. 68,388 views.
Release Date:
2006-09-19
Secunia Advisory ID:
SA21989
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Indexing Service Cross-Site Scripting
Vendor Patch. Secunia Advisory 17 of 40 in 2006. 13,361 views.
Release Date:
2006-09-12
Secunia Advisory ID:
SA21861
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
Where:
From remote
Short Description:
Eiji James Yoshida has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Windows Server Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 18 of 40 in 2006. 19,362 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21388
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 19 of 40 in 2006. 13,018 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21415
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Two Vulnerabilities
Vendor Patch. Secunia Advisory 20 of 40 in 2006. 13,583 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21417
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to compromise a vulnerable system. [Read More]


Microsoft Management Console Cross-Site Scripting
Vendor Patch. Secunia Advisory 21 of 40 in 2006. 11,769 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21401
Solution Status:
Vendor Patch
Criticality:
Impact:
Cross Site Scripting
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]


Windows DNS Resolution Code Execution Vulnerabilities
Vendor Patch. Secunia Advisory 22 of 40 in 2006. 17,523 views.
Release Date:
2006-08-08
Secunia Advisory ID:
SA21394
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF File Handling Denial of Service
Unpatched. Secunia Advisory 23 of 40 in 2006. 14,213 views.
Release Date:
2006-08-07
Secunia Advisory ID:
SA21377
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
cyanid-E has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Server Service DoS and Privilege Escalation
Vendor Patch. Secunia Advisory 24 of 40 in 2006. 17,477 views.
Release Date:
2006-07-31
Secunia Advisory ID:
SA21276
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges and by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Server Service Two Vulnerabilities
Vendor Patch. Secunia Advisory 25 of 40 in 2006. 15,299 views.
Release Date:
2006-07-11
Secunia Advisory ID:
SA21007
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to expose sensitive information and compromise a vulnerable system. [Read More]


Windows DHCP Client Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 26 of 40 in 2006. 14,984 views.
Release Date:
2006-07-11
Secunia Advisory ID:
SA21010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Cybsec Security Systems has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows HTML Help ActiveX Control Memory Corruption
Vendor Patch. Secunia Advisory 27 of 40 in 2006. 26,759 views.
Release Date:
2006-07-04
Secunia Advisory ID:
SA20906
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Internet Explorer Information Disclosure and HTA Application Execution
Vendor Patch. Secunia Advisory 28 of 40 in 2006. 29,530 views.
Release Date:
2006-06-27
Secunia Advisory ID:
SA20825
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Plebo Aesdi Nael has discovered two vulnerabilities in Microsoft Windows, which can be exploited by malicious people to disclose potentially sensitive information and potentially compromise a user's system. [Read More]


Microsoft Windows Hyperlink Object Library Vulnerabilities
Vendor Patch. Secunia Advisory 29 of 40 in 2006. 41,895 views.
Release Date:
2006-06-20
Secunia Advisory ID:
SA20748
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Routing and Remote Access Vulnerabilities
Vendor Patch. Secunia Advisory 30 of 40 in 2006. 18,897 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20630
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people or users to compromise a vulnerable system. [Read More]


Microsoft JScript Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 31 of 40 in 2006. 13,457 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20620
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows TCP/IP Protocol Driver Buffer Overflow
Vendor Patch. Secunia Advisory 32 of 40 in 2006. 23,574 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20639
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows ART Image Handling Buffer Overflow
Vendor Patch. Secunia Advisory 33 of 40 in 2006. 13,476 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20605
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows RPC Mutual Authentication Vulnerability
Vendor Patch. Secunia Advisory 34 of 40 in 2006. 11,946 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20637
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to spoof a valid RPC server. [Read More]


Windows SMB Denial of Service and Privilege Escalation
Vendor Patch. Secunia Advisory 35 of 40 in 2006. 11,982 views.
Release Date:
2006-06-13
Secunia Advisory ID:
SA20635
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Ruben Santamarta has reported two vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) and gain escalated privileges. [Read More]


Microsoft Windows "itss.dll" Heap Corruption Vulnerability
Unpatched. Secunia Advisory 36 of 40 in 2006. 17,400 views.
Release Date:
2006-05-10
Secunia Advisory ID:
SA20061
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Rubén Santamarta has discovered a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Distributed Transaction Coordinator Two Vulnerabilities
Vendor Patch. Secunia Advisory 37 of 40 in 2006. 37,219 views.
Release Date:
2006-05-09
Secunia Advisory ID:
SA20000
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft Windows Explorer COM Object Handling Vulnerability
Vendor Patch. Secunia Advisory 38 of 40 in 2006. 16,933 views.
Release Date:
2006-04-11
Secunia Advisory ID:
SA19606
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Player Plug-in EMBED Element Buffer Overflow
Vendor Patch. Secunia Advisory 39 of 40 in 2006. 25,250 views.
Release Date:
2006-02-14
Secunia Advisory ID:
SA18852
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Windows Media Player plug-in, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Embedded Web Fonts Code Execution Vulnerability
Vendor Patch. Secunia Advisory 40 of 40 in 2006. 18,376 views.
Release Date:
2006-01-10
Secunia Advisory ID:
SA18365
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WMF "SETABORTPROC" Arbitrary Code Execution
Vendor Patch. Secunia Advisory 1 of 38 in 2005. 167,883 views.
Release Date:
2005-12-28
Secunia Advisory ID:
SA18255
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Kernel APC Queue List Handling Privilege Escalation
Vendor Patch. Secunia Advisory 2 of 38 in 2005. 13,654 views.
Release Date:
2005-12-13
Secunia Advisory ID:
SA15821
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows UPnP GetDeviceList Denial of Service
Unpatched. Secunia Advisory 3 of 38 in 2005. 19,212 views.
Release Date:
2005-11-17
Secunia Advisory ID:
SA17595
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
Winny Thomas has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows WMF/EMF File Rendering Arbitrary Code Execution
Vendor Patch. Secunia Advisory 4 of 38 in 2005. 27,552 views.
Release Date:
2005-11-08
Secunia Advisory ID:
SA17498
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Client Service for NetWare Buffer Overflow
Vendor Patch. Secunia Advisory 5 of 38 in 2005. 15,513 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17165
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious users, or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Plug-and-Play Service Buffer Overflows
Vendor Patch. Secunia Advisory 6 of 38 in 2005. 15,568 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17166
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
eEye Digital Security has reported some vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges, or by malicious users to compromise a vulnerable system. [Read More]


Microsoft Windows Shell and Web View Three Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 38 in 2005. 15,266 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17168
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Three vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows DirectShow AVI Handling Vulnerability
Vendor Patch. Secunia Advisory 8 of 38 in 2005. 20,636 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17160
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has been reported a vulnerability in Microsoft Windows DirectShow, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Collaboration Data Objects Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 38 in 2005. 17,292 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17167
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Gary O'leary-Steele has reported a vulnerability in Microsoft Windows and Microsoft Exchange 2000 Server, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows MSDTC and COM+ Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 38 in 2005. 24,458 views.
Release Date:
2005-10-11
Secunia Advisory ID:
SA17161
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From local network
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges, or by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Windows Registry Editor Utility String Concealment Weakness
Unpatched. Secunia Advisory 11 of 38 in 2005. 72,565 views.
Release Date:
2005-08-24
Secunia Advisory ID:
SA16560
Solution Status:
Unpatched
Criticality:
Impact:
Spoofing
Where:
Local system
Short Description:
Igor Franchuk has discovered a weakness in Microsoft Windows, which can be exploited to hide certain information. [Read More]


Microsoft Windows COM Object Instantiation Memory Corruption Vulnerability
Vendor Patch. Secunia Advisory 12 of 38 in 2005. 58,987 views.
Release Date:
2005-08-18
Secunia Advisory ID:
SA16480
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Internet Explorer, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Telephony Service Vulnerability
Vendor Patch. Secunia Advisory 13 of 38 in 2005. 16,523 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16354
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Print Spooler Service Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 14 of 38 in 2005. 27,101 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16356
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or potentially compromise a vulnerable system. [Read More]


Microsoft Windows Two Kerberos Vulnerabilities
Vendor Patch. Secunia Advisory 15 of 38 in 2005. 13,640 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16368
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Exposure of sensitive information
DoS
Where:
From local network
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious users to cause a DoS (Denial of Service), reveal sensitive information, or impersonate other users. [Read More]


Microsoft Windows Plug-and-Play Service Buffer Overflow
Vendor Patch. Secunia Advisory 16 of 38 in 2005. 25,891 views.
Release Date:
2005-08-09
Secunia Advisory ID:
SA16372
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From local network
Short Description:
ISS X-Force has reported a vulnerability in Microsoft Windows, which can be exploited by malicious users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Unspecified USB Device Driver Vulnerability
Unpatched. Secunia Advisory 17 of 38 in 2005. 34,266 views.
Release Date:
2005-07-27
Secunia Advisory ID:
SA16210
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people with physical access to a vulnerable system to compromise it. [Read More]


Microsoft Windows Network Connections Service Denial of Service
Vendor Patch. Secunia Advisory 18 of 38 in 2005. 23,794 views.
Release Date:
2005-07-14
Secunia Advisory ID:
SA16065
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
bkbll has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Windows Remote Desktop Protocol Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 19 of 38 in 2005. 37,566 views.
Release Date:
2005-07-14
Secunia Advisory ID:
SA16071
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Tom Ferris has reported a vulnerability in Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Color Management Module Buffer Overflow
Vendor Patch. Secunia Advisory 20 of 38 in 2005. 28,635 views.
Release Date:
2005-07-12
Secunia Advisory ID:
SA16004
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Agent Trusted Internet Content Spoofing Vulnerability
Vendor Patch. Secunia Advisory 21 of 38 in 2005. 14,396 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15689
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to spoof certain information and potentially trick a user into installing a malicious program. [Read More]


Microsoft Windows HTML Help Input Validation Vulnerability
Vendor Patch. Secunia Advisory 22 of 38 in 2005. 17,418 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15683
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Internet Explorer Two Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 38 in 2005. 22,957 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15606
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Internet Explorer, which can be exploited by malicious people to disclose sensitive information and compromise a users system. [Read More]


Microsoft Windows Step-by-Step Interactive Training Vulnerability
Vendor Patch. Secunia Advisory 24 of 38 in 2005. 15,850 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15669
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
iDEFENSE Labs has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Server Message Block Vulnerability
Vendor Patch. Secunia Advisory 25 of 38 in 2005. 18,513 views.
Release Date:
2005-06-14
Secunia Advisory ID:
SA15694
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Remote Desktop Protocol Private Key Disclosure
Unpatched. Secunia Advisory 26 of 38 in 2005. 29,277 views.
Release Date:
2005-06-06
Secunia Advisory ID:
SA15605
Solution Status:
Unpatched
Criticality:
Impact:
Hijacking
Where:
From remote
Short Description:
Massimiliano Montoro has reported a security issue in Microsoft Windows, which can be exploited by malicious people to conduct MitM (Man-in-the-Middle) attacks. [Read More]


Microsoft Windows Explorer Web View Script Insertion Vulnerability
Vendor Patch. Secunia Advisory 27 of 38 in 2005. 25,084 views.
Release Date:
2005-04-20
Secunia Advisory ID:
SA15017
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
GreyMagic has discovered a vulnerability in Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Kernel Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 28 of 38 in 2005. 14,965 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14927
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
Where:
Local system
Short Description:
Some vulnerabilities have been reported in the Microsoft Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service) or gain escalated privileges. [Read More]


Microsoft Windows Shell MSHTA Script Execution Vulnerability
Vendor Patch. Secunia Advisory 29 of 38 in 2005. 18,932 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14909
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Message Queuing Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 30 of 38 in 2005. 124,078 views.
Release Date:
2005-04-12
Secunia Advisory ID:
SA14921
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows EMF File Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 31 of 38 in 2005. 19,322 views.
Release Date:
2005-03-18
Secunia Advisory ID:
SA14631
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Hongzhen Zhou has discovered a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows TCP/IP Implementation Vulnerabilities
Vendor Patch. Secunia Advisory 32 of 38 in 2005. 29,884 views.
Release Date:
2005-03-07
Secunia Advisory ID:
SA14512
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]


Microsoft Windows SMB Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 33 of 38 in 2005. 17,481 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA11634
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
eEye Digital Security has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows OLE / COM Two Vulnerabilities
Vendor Patch. Secunia Advisory 34 of 38 in 2005. 15,102 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14193
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
System access
Where:
From remote
Short Description:
Cesar Cerrudo has reported two vulnerabilities in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges or by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Hyperlink Object Library Buffer Overflow
Vendor Patch. Secunia Advisory 35 of 38 in 2005. 15,313 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14195
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Anna Hollingzworth has reported a vulnerability in Microsoft Windows, which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Anonymous Named Pipe Connection Information Disclosure
Vendor Patch. Secunia Advisory 36 of 38 in 2005. 17,754 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14189
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of system information
Where:
From local network
Short Description:
Jean-Baptiste Marchand has reported a weakness in Microsoft Windows 2000 and XP, which can be exploited by malicious people to gain knowledge of certain system information. [Read More]


Microsoft Windows Drag and Drop Vulnerability
Vendor Patch. Secunia Advisory 37 of 38 in 2005. 18,978 views.
Release Date:
2005-02-08
Secunia Advisory ID:
SA14190
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Windows Registry Key Locking Denial of Service
Unpatched. Secunia Advisory 38 of 38 in 2005. 21,279 views.
Release Date:
2005-01-31
Secunia Advisory ID:
SA14061
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Vladimir Kraljevic has reported a security issue in Windows, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Multiple Vulnerabilities
Partial Fix. Secunia Advisory 1 of 28 in 2004. 49,025 views.
Release Date:
2004-12-25
Secunia Advisory ID:
SA13645
Solution Status:
Partial Fix
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
Flashsky has reported some vulnerabilities in Microsoft Windows, allowing malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]


Microsoft Windows Kernel and LSASS Privilege Escalation Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 28 in 2004. 17,432 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13465
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Cesar Cerrudo has reported two vulnerabilities in Microsoft Windows, allowing malicious, local users to escalate their privileges. [Read More]


Microsoft Word for Windows Converter Buffer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 3 of 28 in 2004. 18,722 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13462
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Some vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows WINS "Name" Validation Vulnerability
Vendor Patch. Secunia Advisory 4 of 28 in 2004. 16,026 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13466
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Kostya Kortchinsky has reported two vulnerabilities in Microsoft Windows, allowing malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows HyperTerminal Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 5 of 28 in 2004. 17,893 views.
Release Date:
2004-12-14
Secunia Advisory ID:
SA13464
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Brett Moore has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows WINS Replication Packet Handling Vulnerability
Vendor Patch. Secunia Advisory 6 of 28 in 2004. 21,429 views.
Release Date:
2004-11-29
Secunia Advisory ID:
SA13328
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Nicolas Waisman has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Shell and Program Group Converter Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 28 in 2004. 17,247 views.
Release Date:
2004-10-13
Secunia Advisory ID:
SA12808
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 8 of 28 in 2004. 19,696 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12804
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Multiple vulnerabilities have been reported in Microsoft Windows, which can be exploited to cause a DoS (Denial of Service), gain escalated privileges, or compromise a vulnerable system. [Read More]


Microsoft Windows NetDDE Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 28 in 2004. 16,928 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12803
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
John Heasman has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows WebDAV XML Message Handler Denial of Service
Vendor Patch. Secunia Advisory 10 of 28 in 2004. 18,109 views.
Release Date:
2004-10-12
Secunia Advisory ID:
SA12801
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Amit Klein has reported a vulnerability in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Windows Packet Fragmentation Handling Denial of Service Vulnerability
Unpatched. Secunia Advisory 11 of 28 in 2004. 16,724 views.
Release Date:
2004-10-01
Secunia Advisory ID:
SA12670
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Gandalf The White has reported a variant of some known vulnerabilities in Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows POSIX Subsystem Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 12 of 28 in 2004. 13,407 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12062
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Rafal Wojtczuk has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows 2000 Utility Manager Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 13 of 28 in 2004. 12,659 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12051
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Cesar Cerrudo has discovered a vulnerability in Microsoft Windows 2000, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Microsoft Windows Task Scheduler Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 14 of 28 in 2004. 17,614 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12060
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued an update for Windows. This fixes a vulnerability, allowing malicious websites to execute arbitrary code on a vulnerable system. [Read More]


Microsoft Windows / Internet Explorer File Download Extension Spoofing
Vendor Patch. Secunia Advisory 15 of 28 in 2004. 18,258 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12058
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Microsoft has issued an update for Microsoft Windows. This fixes a vulnerability, allowing malicious web sites to spoof the extension of files being downloaded. [Read More]


Microsoft Windows showHelp and HTML Help Vulnerabilities
Vendor Patch. Secunia Advisory 16 of 28 in 2004. 16,308 views.
Release Date:
2004-07-13
Secunia Advisory ID:
SA12059
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
System access
Where:
From remote
Short Description:
Microsoft has issued an update for Windows. This fixes two vulnerabilities, allowing malicious websites to compromise a vulnerable system. [Read More]


Microsoft Java Virtual Machine Cross-Site Communication Vulnerability
Unpatched. Secunia Advisory 17 of 28 in 2004. 19,972 views.
Release Date:
2004-07-12
Secunia Advisory ID:
SA12047
Solution Status:
Unpatched
Criticality:
Impact:
Security Bypass
Where:
From remote
Short Description:
Marc Schoenefeld has reported a vulnerability in Microsoft Java Virtual Machine, allowing Java applets originating from different domains to communicate. [Read More]


Microsoft DirectPlay Packet Validation Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 18 of 28 in 2004. 15,717 views.
Release Date:
2004-06-08
Secunia Advisory ID:
SA11802
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
John Lampe has discovered a vulnerability in Microsoft DirectPlay, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Windows 2000 Expired Password Domain Authentication Security Issue
Vendor Patch. Secunia Advisory 19 of 28 in 2004. 15,963 views.
Release Date:
2004-06-01
Secunia Advisory ID:
SA11746
Solution Status:
Vendor Patch
Criticality:
Impact:
Security Bypass
Where:
From local network
Short Description:
A security issue has been discovered in Windows 2000, which may allow bypassing certain security restrictions. [Read More]


Microsoft Windows "desktop.ini" Arbitrary File Execution Vulnerability
Vendor Patch. Secunia Advisory 20 of 28 in 2004. 39,981 views.
Release Date:
2004-05-18
Secunia Advisory ID:
SA11633
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Roozbeh Afrasiabi has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. [Read More]


Windows Explorer / Internet Explorer Long Share Name Buffer Overflow
Vendor Patch. Secunia Advisory 21 of 28 in 2004. 73,265 views.
Release Date:
2004-04-26
Secunia Advisory ID:
SA11482
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Rodrigo Gutierrez has discovered a vulnerability in Windows and Internet Explorer, which can be exploited by malicious people to compromise a user's system. [Read More]


Microsoft Windows RPC/DCOM Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 22 of 28 in 2004. 18,050 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11065
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Microsoft has issued an advisory regarding multiple vulnerabilities in RPC/DCOM, where the most serious can potentially lead to a system compromise. [Read More]


Microsoft Windows 14 Vulnerabilities
Vendor Patch. Secunia Advisory 23 of 28 in 2004. 35,970 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11064
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Microsoft has acknowledged 14 vulnerabilities in the Windows operating system, where the most serious can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Jet Database Engine Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 24 of 28 in 2004. 15,811 views.
Release Date:
2004-04-13
Secunia Advisory ID:
SA11068
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Matt Thompson has discovered a vulnerability in Microsoft Jet Database Engine, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows 2000 Server Media Services Denial of Service
Vendor Patch. Secunia Advisory 25 of 28 in 2004. 13,193 views.
Release Date:
2004-03-09
Secunia Advisory ID:
SA11077
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Qualys has discovered a vulnerability in Microsoft Media Services, allowing malicious people to cause a Denial of Service against the Media Services. [Read More]


Microsoft Windows WINS Server Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 26 of 28 in 2004. 15,352 views.
Release Date:
2004-02-10
Secunia Advisory ID:
SA10835
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Qualys has discovered a vulnerability in certain versions of Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft Windows ASN.1 Library Integer Overflow Vulnerabilities
Vendor Patch. Secunia Advisory 27 of 28 in 2004. 28,732 views.
Release Date:
2004-02-10
Secunia Advisory ID:
SA10759
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
eEye Digital Security has discovered some vulnerabilities in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Data Access Components Broadcast Reply Buffer Overflow
Vendor Patch. Secunia Advisory 28 of 28 in 2004. 16,894 views.
Release Date:
2004-01-13
Secunia Advisory ID:
SA10616
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has reported a vulnerability in MDAC (Microsoft Data Access Components), which potentially can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Workstation Service Buffer Overflow
Vendor Patch. Secunia Advisory 1 of 31 in 2003. 17,672 views.
Release Date:
2003-11-11
Secunia Advisory ID:
SA10193
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has issued patches for Windows 2000 and XP. These fix a vulnerability in the Workstation service, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft HTML Help Control Privilege Escalation Vulnerability
Unpatched. Secunia Advisory 2 of 31 in 2003. 19,581 views.
Release Date:
2003-10-27
Secunia Advisory ID:
SA10066
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Microsoft HTML Help, which can be exploited by malicious, local users to escalate their privileges. [Read More]


Microsoft Windows Buffer Overflow in Messenger Service
Vendor Patch. Secunia Advisory 3 of 31 in 2003. 22,952 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10012
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a buffer overflow vulnerability in Messenger Service, which could lead to execution of arbitrary code. [Read More]


Microsoft Windows 2000 Buffer Overflow in Windows Troubleshooter ActiveX Control
Vendor Patch. Secunia Advisory 4 of 31 in 2003. 12,328 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10011
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to fix a vulnerability in the Windows Trouble Shooter ActiveX Control. This can be exploited by malicious HTML documents like web sites and emails to compromise a user's system. [Read More]


Microsoft Windows May Allow Installation of Arbitrary ActiveX Controls
Vendor Patch. Secunia Advisory 5 of 31 in 2003. 17,139 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10010
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to fix a vulnerability in Microsoft Windows (Internet Explorer) allowing malicious HTML documents like web pages or emails to install arbitrary ActiveX controls. [Read More]


Windows RPC Race Condition Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 6 of 31 in 2003. 19,627 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA9978
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
ISS X-Force has reported a vulnerability in some versions of Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Microsoft Windows Buffer Overflow in ListBox and ComboBox Control
Vendor Patch. Secunia Advisory 7 of 31 in 2003. 14,983 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10014
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Microsoft has issued patches to fix a vulnerability in Microsoft Windows allowing malicious users to escalate their privileges. [Read More]


Microsoft Windows Help and Support Center Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 8 of 31 in 2003. 16,887 views.
Release Date:
2003-10-15
Secunia Advisory ID:
SA10013
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches for Microsoft Windows to fix a vulnerability in the Help and Support Center. [Read More]


Windows Message Queuing Service Heap Overflow Vulnerability
Vendor Patch. Secunia Advisory 9 of 31 in 2003. 14,752 views.
Release Date:
2003-10-11
Secunia Advisory ID:
SA9991
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been reported in Windows 2000, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Microsoft Windows Unauthorised Thread Termination
Unpatched. Secunia Advisory 10 of 31 in 2003. 18,471 views.
Release Date:
2003-10-03
Secunia Advisory ID:
SA9921
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been reported in Windows, which can be exploited by malicious, local users to terminate certain privileged programs. [Read More]


Microsoft Windows TCP Packet Information Disclosure
Unpatched. Secunia Advisory 11 of 31 in 2003. 17,164 views.
Release Date:
2003-09-22
Secunia Advisory ID:
SA9799
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Where:
From remote
Short Description:
A vulnerability has been identified in the handling of TCP packets in Microsoft Windows 2000 and Windows XP, which potentially can expose sensitive information. [Read More]


Microsoft Windows RPCSS Service DCOM Interface Vulnerabilities
Vendor Patch. Secunia Advisory 12 of 31 in 2003. 33,999 views.
Release Date:
2003-09-10
Secunia Advisory ID:
SA9692
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From local network
Short Description:
Three vulnerabilities have been identified in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system or cause a DoS (Denial of Service). [Read More]


Microsoft Windows NetBIOS Random Memory Content Disclosure
Vendor Patch. Secunia Advisory 13 of 31 in 2003. 13,808 views.
Release Date:
2003-09-03
Secunia Advisory ID:
SA9665
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From local network
Short Description:
A vulnerability has been discovered in all supported Windows versions except Windows ME, which can be exploited by malicious people to disclose potentially sensitive information. [Read More]


Microsoft MDAC Buffer Overflow
Vendor Patch. Secunia Advisory 14 of 31 in 2003. 14,341 views.
Release Date:
2003-08-20
Secunia Advisory ID:
SA9579
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
Microsoft has issued a patch for MDAC due to a vulnerability which allows malicious people to cause a buffer overflow. [Read More]


Microsoft Windows DirectX Remotely Exploitable Buffer Overflow
Vendor Patch. Secunia Advisory 15 of 31 in 2003. 23,941 views.
Release Date:
2003-07-23
Secunia Advisory ID:
SA9335
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in DirectX allowing malicious people to gain system access. [Read More]


Windows RPC DCOM Interface Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 16 of 31 in 2003. 21,819 views.
Release Date:
2003-07-16
Secunia Advisory ID:
SA9287
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From local network
Short Description:
A vulnerability has been identified in Microsoft Windows, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows SMB Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 17 of 31 in 2003. 13,706 views.
Release Date:
2003-07-09
Secunia Advisory ID:
SA9225
Solution Status:
Vendor Patch
Criticality:
Impact:
Manipulation of data
DoS
System access
Where:
From local network
Short Description:
A vulnerability has been identified in some versions of Windows, which can be exploited by malicious users to cause a DoS (Denial of Service) on a vulnerable system and potentially compromise it. [Read More]


Windows 2000 Utility Manager Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 18 of 31 in 2003. 10,587 views.
Release Date:
2003-07-09
Secunia Advisory ID:
SA9224
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in Windows 2000, which can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]


Windows 2000 ShellExecute API Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 19 of 31 in 2003. 11,826 views.
Release Date:
2003-07-03
Secunia Advisory ID:
SA9175
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Windows 2000, which can be exploited by malicious people to crash applications and potentially compromise a vulnerable system. [Read More]


Windows NetMeeting Directory Traversal Vulnerability
Vendor Patch. Secunia Advisory 20 of 31 in 2003. 15,869 views.
Release Date:
2003-07-02
Secunia Advisory ID:
SA9170
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in Windows NetMeeting, which can be exploited by malicious people to overwrite arbitrary files on a user's system with the privileges of the user. [Read More]


Microsoft Windows HTML Converter Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 21 of 31 in 2003. 16,094 views.
Release Date:
2003-06-25
Secunia Advisory ID:
SA9113
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been identified in all supported Windows versions, which can be exploited by malicious people to compromise a vulnerable system. [Read More]


Windows Media Services ISAPI Extension Execution of Arbitrary Code
Vendor Patch. Secunia Advisory 22 of 31 in 2003. 11,538 views.
Release Date:
2003-05-28
Secunia Advisory ID:
SA8883
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been identified in some versions of Microsoft Windows, which can be exploited by a malicious person to execute arbitrary code on a vulnerable system. [Read More]


Windows NTFS File System Information Disclosure
Unpatched. Secunia Advisory 23 of 31 in 2003. 18,238 views.
Release Date:
2003-04-22
Secunia Advisory ID:
SA8635
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of system information
Exposure of sensitive information
Where:
Local system
Short Description:
Matthew Murphy has reported a security issue in Windows, which potentially can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]


Windows Kernel Privilege Escalation Vulnerability
Vendor Patch. Secunia Advisory 24 of 31 in 2003. 10,828 views.
Release Date:
2003-04-16
Secunia Advisory ID:
SA8609
Solution Status:
Vendor Patch
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in some versions of Windows, which can be exploited by malicious users on a vulnerable system to escalate their privileges. [Read More]


Microsoft Virtual Machine Bytecode Verifier Vulnerability
Vendor Patch. Secunia Advisory 25 of 31 in 2003. 15,953 views.
Release Date:
2003-04-09
Secunia Advisory ID:
SA8559
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability identified in Microsoft VM (Virtual Machine) shipped with almost all versions of Windows (except some versions of Windows XP) can be exploited by malicious people to compromise a user's system. [Read More]


Windows Script Engine Heap Overflow
Vendor Patch. Secunia Advisory 26 of 31 in 2003. 11,144 views.
Release Date:
2003-03-19
Secunia Advisory ID:
SA8346
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
A vulnerability identified in all currently supported versions of Microsoft Windows can be exploited by malicious people to compromise a user's system. [Read More]


Windows 2000/XP PostMessage Password Disclosure
Unpatched. Secunia Advisory 27 of 31 in 2003. 15,001 views.
Release Date:
2003-03-18
Secunia Advisory ID:
SA8329
Solution Status:
Unpatched
Criticality:
Impact:
Exposure of sensitive information
Where:
Local system
Short Description:
An information disclosure vulnerability has been identified in Windows 2000 and Windows XP, which can be exploited by a malicious, local user to gain knowledge of sensitive information. [Read More]


Windows buffer overflow in riched20.dll
Unpatched. Secunia Advisory 28 of 31 in 2003. 13,228 views.
Release Date:
2003-02-20
Secunia Advisory ID:
SA8099
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability in Windows can be exploited by malicious people to crash certain applications on a user's system. [Read More]


Microsoft Windows Terminal Server Denial of Service
Unpatched. Secunia Advisory 29 of 31 in 2003. 13,496 views.
Release Date:
2003-01-28
Secunia Advisory ID:
SA7959
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
Windows 2000 and XP systems running as terminal servers can be crashed by local users. This can be done via RDP (Remote Desktop Protocol) or Citrix ICA Clients. [Read More]


Microsoft Windows buffer overflow in Locator Service
Vendor Patch. Secunia Advisory 30 of 31 in 2003. 10,743 views.
Release Date:
2003-01-23
Secunia Advisory ID:
SA7926
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued a security bulletin regarding a buffer overflow in the Locator Service. The Locater service only runs by default on Windows NT and 2000 domain controllers. [Read More]


Microsoft Windows crashes on invalid font file
Unpatched. Secunia Advisory 31 of 31 in 2003. 13,037 views.
Release Date:
2003-01-07
Secunia Advisory ID:
SA7824
Solution Status:
Unpatched
Criticality:
Impact:
DoS
Where:
Local system
Short Description:
Microsoft Windows 2000 and XP does not handle fonts correctly. Malformed font files can bring the system to an immediate reboot if viewed in the font viewer (fontview). [Read More]


Microsoft Windows Certificate Chain vulnerability
Unpatched. Secunia Advisory 1 of 16 in 2002. 18,528 views.
Release Date:
2002-12-30
Secunia Advisory ID:
SA7793
Solution Status:
Unpatched
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft Windows is flawed in the way it trusts certificates. Microsoft Windows File Protection will automatically trust software that has been digitally signed with certificates rooted in any of the Trusted Root Certification Authorities. [Read More]


Microsoft Windows SMB signing bypass
Vendor Patch. Secunia Advisory 2 of 16 in 2002. 11,617 views.
Release Date:
2002-12-12
Secunia Advisory ID:
SA7689
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Privilege escalation
Where:
From local network
Short Description:
Microsoft Windows 2000 and XP supports digital signing of SMB traffic. However it is possible for malicious persons to downgrade / turn off signing even if the network adminstrator has required this. [Read More]


Microsoft Windows Window Messaging Privilege Escalation Vulnerability
Partial Fix. Secunia Advisory 3 of 16 in 2002. 12,227 views.
Release Date:
2002-12-12
Secunia Advisory ID:
SA7688
Solution Status:
Partial Fix
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
A vulnerability has been identified in Microsoft Windows, which can be exploited by malicious, local users to escalate their privileges on a vulnerable system. [Read More]


Microsoft Windows Virtual Machine multiple vulnerabilities
Vendor Patch. Secunia Advisory 4 of 16 in 2002. 11,898 views.
Release Date:
2002-12-12
Secunia Advisory ID:
SA7687
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued a new build of their virtual machine, it fixes a number of issues, some which previously has been published by Secunia. [Read More]


Microsoft vulnerabilities in Internet Explorer, Outlook, Outlook Express and Internet Information Server (IIS)
Vendor Patch. Secunia Advisory 5 of 16 in 2002. 21,731 views.
Release Date:
2002-11-20
Secunia Advisory ID:
SA7567
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Remote Data Services (RDS) which is part of Microsoft Data Access Components (MDAC) contains a buffer overflow allowing attackers to run arbitrary code. [Read More]


Microsoft Windows 2000 insecure permissions
Unpatched. Secunia Advisory 6 of 16 in 2002. 9,435 views.
Release Date:
2002-10-31
Secunia Advisory ID:
SA7421
Solution Status:
Unpatched
Criticality:
Impact:
Privilege escalation
Where:
Local system
Short Description:
Windows 2000 provides everyone full acccess to the system root (usually c:\), this could be abused to lauch trojan horse applications against other local users. [Read More]


Microsoft PPTP Implementation Buffer Overflow Vulnerability
Vendor Patch. Secunia Advisory 7 of 16 in 2002. 10,036 views.
Release Date:
2002-10-31
Secunia Advisory ID:
SA7420
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]


Windows 2000 pre SP3 SNMP DoS issue
Vendor Patch. Secunia Advisory 8 of 16 in 2002. 7,744 views.
Release Date:
2002-10-22
Secunia Advisory ID:
SA7366
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
Microsoft Windows 2000 which does not have Service Pack 3 installed are vulnerable to a Denial of Service attack. [Read More]


Microsoft Windows RPC Endpoint Mapper Denial of Service
Vendor Patch. Secunia Advisory 9 of 16 in 2002. 11,739 views.
Release Date:
2002-10-19
Secunia Advisory ID:
SA7347
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From local network
Short Description:
A vulnerability has been identified in Windows, which can be exploited by a malicious person to cause a DoS (Denial of Service) on some services on a vulnerable system. [Read More]


Microsoft Windows HTML Help facility buffer overflow
Vendor Patch. Secunia Advisory 10 of 16 in 2002. 6,800 views.
Release Date:
2002-10-03
Secunia Advisory ID:
SA7199
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
The HTML Help facility contains a number of vulnerabilities, which possibly could allow attackers to gain system access. [Read More]


Microsoft PPTP Client and Server Pre-Authentication Buffer Overflow
Vendor Patch. Secunia Advisory 11 of 16 in 2002. 7,528 views.
Release Date:
2002-09-26
Secunia Advisory ID:
SA7164
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. [Read More]


Microsoft issues patches to Virtual Machine vulnerabilities
Vendor Patch. Secunia Advisory 12 of 16 in 2002. 7,127 views.
Release Date:
2002-09-19
Secunia Advisory ID:
SA7129
Solution Status:
Vendor Patch
Criticality:
Impact:
System access
Where:
From remote
Short Description:
Microsoft has issued patches to three vulnerabilities in VM JDBC. [Read More]


Microsoft RDP / Terminal Services uses weak encryption - patches issued
Vendor Patch. Secunia Advisory 13 of 16 in 2002. 14,364 views.
Release Date:
2002-09-18
Secunia Advisory ID:
SA7118
Solution Status:
Vendor Patch
Criticality:
Impact:
Exposure of sensitive information
Where:
From remote
Short Description:
Microsoft Remote Dekstop Protocol uses weak encryption and bad security practise. [Read More]


Microsoft Windows 16-bit Application Execution Restriction Bypass
Partial Fix. Secunia Advisory 14 of 16 in 2002. 18,954 views.
Release Date:
2002-09-18
Secunia Advisory ID:
SA7127
Solution Status:
Partial Fix
Criticality:
Impact:
Security Bypass
Where:
Local system
Short Description:
Torbjörn Hovmark has reported a security issue in Windows, which can be exploited by malicious, local users to bypass certain security restrictions. [Read More]


Microsoft: Certificate Validation Flaw Enables Identity Spoofing
Vendor Patch. Secunia Advisory 15 of 16 in 2002. 12,866 views.
Release Date:
2002-09-05
Secunia Advisory ID:
SA7072
Solution Status:
Vendor Patch
Criticality:
Impact:
Spoofing
Where:
From remote
Short Description:
Microsoft admits that a critical flaw exists in its Crypto API which evaluates certificates. [Read More]


Microsoft Windows Filesharing Denial of Service Vulnerability
Vendor Patch. Secunia Advisory 16 of 16 in 2002. 1,114 views.
Release Date:
2002-09-02
Secunia Advisory ID:
SA9
Solution Status:
Vendor Patch
Criticality:
Impact:
DoS
Where:
From remote
Short Description:
[Read More]