Show filters
298 Total Results
Displaying 151-160 of 298
Sort by:
Attacker Value
Unknown
CVE-2007-0066
Disclosure Date: January 08, 2008 (last updated October 04, 2023)
The kernel in Microsoft Windows 2000 SP4, XP SP2, and Server 2003, when ICMP Router Discovery Protocol (RDP) is enabled, allows remote attackers to cause a denial of service via fragmented router advertisement ICMP packets that trigger an out-of-bounds read, aka "Windows Kernel TCP/IP/ICMP Vulnerability."
0
Attacker Value
Unknown
CVE-2007-5352
Disclosure Date: January 08, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2 allows local users to gain privileges via a crafted local procedure call (LPC) request.
0
Attacker Value
Unknown
CVE-2007-6026
Disclosure Date: November 20, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allows user-assisted attackers to execute arbitrary code via a crafted MDB file database file containing a column structure with a modified column count. NOTE: this might be the same issue as CVE-2005-0944.
0
Attacker Value
Unknown
CVE-2007-3898
Disclosure Date: November 14, 2007 (last updated October 04, 2023)
The DNS server in Microsoft Windows 2000 Server SP4, and Server 2003 SP1 and SP2, uses predictable transaction IDs when querying other DNS servers, which allows remote attackers to spoof DNS replies, poison the DNS cache, and facilitate further attack vectors.
0
Attacker Value
Unknown
CVE-2007-2228
Disclosure Date: October 09, 2007 (last updated October 04, 2023)
rpcrt4.dll (aka the RPC runtime library) in Microsoft Windows XP SP2, XP Professional x64 Edition, Server 2003 SP1 and SP2, Server 2003 x64 Edition and x64 Edition SP2, and Vista and Vista x64 Edition allows remote attackers to cause a denial of service (RPCSS service stop and system restart) via an RPC request that uses NTLMSSP PACKET authentication with a zero-valued verification trailer signature, which triggers an invalid dereference. NOTE: this also affects Windows 2000 SP4, although the impact is an information leak.
0
Attacker Value
Unknown
CVE-2007-3034
Disclosure Date: August 14, 2007 (last updated October 04, 2023)
Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image) with a large record length value, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2007-0040
Disclosure Date: July 10, 2007 (last updated October 04, 2023)
The LDAP service in Windows Active Directory in Microsoft Windows 2000 Server SP4, Server 2003 SP1 and SP2, Server 2003 x64 Edition and SP2, and Server 2003 for Itanium-based Systems SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted LDAP request with an unspecified number of "convertible attributes."
0
Attacker Value
Unknown
CVE-2006-7210
Disclosure Date: June 27, 2007 (last updated October 04, 2023)
Microsoft Windows 2000, XP, and Server 2003 allows remote attackers to cause a denial of service (cpu consumption) via a PNG image with crafted (1) Width and (2) Height values in the IHDR block.
0
Attacker Value
Unknown
CVE-2007-2219
Disclosure Date: June 12, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the Win32 API on Microsoft Windows 2000, XP SP2, and Server 2003 SP1 and SP2 allows remote attackers to execute arbitrary code via certain parameters to an unspecified function.
0
Attacker Value
Unknown
CVE-2007-2218
Disclosure Date: June 12, 2007 (last updated October 04, 2023)
Unspecified vulnerability in the Windows Schannel Security Package for Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, allows remote servers to execute arbitrary code or cause a denial of service via crafted digital signatures that are processed during an SSL handshake.
0