Show filters
250 Total Results
Displaying 131-140 of 250
Sort by:
Attacker Value
Unknown

CVE-2006-2378

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Buffer overflow in the ART Image Rendering component (jgdw400.dll) in Microsoft Windows XP SP1 and Sp2, Server 2003 SP1 and earlier, and Windows 98 and Me allows remote attackers to execute arbitrary code via a crafted ART image that causes heap corruption.
0
Attacker Value
Unknown

CVE-2006-2371

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Buffer overflow in the Remote Access Connection Manager service (RASMAN) service in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," that lead to registry corruption and stack corruption, aka the "RASMAN Registry Corruption Vulnerability."
0
Attacker Value
Unknown

CVE-2006-2370

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Buffer overflow in the Routing and Remote Access service (RRAS) in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote unauthenticated or authenticated attackers to execute arbitrary code via certain crafted "RPC related requests," aka the "RRAS Memory Corruption Vulnerability."
0
Attacker Value
Unknown

CVE-2006-2379

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Buffer overflow in the TCP/IP Protocol driver in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote attackers to execute arbitrary code via unknown vectors related to IP source routing.
0
Attacker Value
Unknown

CVE-2006-1313

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Microsoft JScript 5.1, 5.5, and 5.6 on Windows 2000 SP4, and 5.6 on Windows XP, Server 2003, Windows 98 and Windows Me, will "release objects early" in certain cases, which results in memory corruption and allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2006-2980

Disclosure Date: June 12, 2006 (last updated October 04, 2023)
SQL injection vulnerability in block_forum_topic_new.php in ViArt Shop Free 2.5.5, and possibly other distributions including Light, Standard, and Enterprise, might allow remote attackers to execute arbitrary SQL commands via unknown vectors, probably involving the forum_id parameter.
0
Attacker Value
Unknown

CVE-2006-1184

Disclosure Date: May 10, 2006 (last updated October 04, 2023)
Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0, 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to cause a denial of service (crash) via a BuildContextW request with a large (1) UuidString or (2) GuidIn of a certain length, which causes an out-of-range memory access, aka the MSDTC Denial of Service Vulnerability. NOTE: this is a variant of CVE-2005-2119.
0
Attacker Value
Unknown

CVE-2006-0034

Disclosure Date: May 10, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via a long fifth argument to the BuildContextW or BuildContext opcode, which triggers a bug in the NdrAllocate function, aka the MSDTC Invalid Memory Access Vulnerability.
0
Attacker Value
Unknown

CVE-2006-1951

Disclosure Date: April 24, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in SolarWinds TFTP Server 8.1 and earlier allows remote attackers to download arbitrary files via a crafted GET request including "....//" sequences, which are collapsed into "../" sequences by filtering.
0
Attacker Value
Unknown

CVE-2006-1792

Disclosure Date: April 15, 2006 (last updated October 04, 2023)
Unspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Edition before 1.22 has unknown attack vectors and impact related to "authentication exploits". NOTE: this is a different set of affected versions, and probably a different vulnerability than CVE-2006-1337.
0