Show filters
68 Total Results
Displaying 21-30 of 68
Sort by:
Attacker Value
Unknown
CVE-2006-0143
Disclosure Date: January 09, 2006 (last updated October 04, 2023)
Microsoft Windows Graphics Rendering Engine (GRE) allows remote attackers to corrupt memory and cause a denial of service (crash) via a WMF file containing (1) ExtCreateRegion or (2) ExtEscape function calls with arguments with inconsistent lengths.
0
Attacker Value
Unknown
CVE-2005-4560
Disclosure Date: December 28, 2005 (last updated October 04, 2023)
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) format image with a crafted SETABORTPROC GDI Escape function call, related to the Windows Picture and Fax Viewer (SHIMGVW.DLL), a different vulnerability than CVE-2005-2123 and CVE-2005-2124, and as originally discovered in the wild on unionseek.com.
0
Attacker Value
Unknown
CVE-2005-3981
Disclosure Date: December 04, 2005 (last updated November 08, 2023)
NOTE: this issue has been disputed by third parties. Microsoft Windows XP, 2000, and 2003 allows local users to kill a writable process by using the CreateRemoteThread function with certain arguments on a process that has been opened using the OpenProcess function, possibly involving an invalid address for the start routine. NOTE: followup posts have disputed this issue, saying that if a user already has privileges to write to a process, then other functions could be called or the process could be terminated using PROCESS_TERMINATE
0
Attacker Value
Unknown
CVE-2005-3945
Disclosure Date: December 01, 2005 (last updated October 04, 2023)
The SynAttackProtect protection in Microsoft Windows 2003 before SP1 and Windows 2000 before SP4 with Update Roll-up uses a hash of predictable data, which allows remote attackers to cause a denial of service (CPU consumption) via a flood of SYN packets that produce identical hash values, which slows down the hash table lookups.
0
Attacker Value
Unknown
CVE-2005-1982
Disclosure Date: August 10, 2005 (last updated October 04, 2023)
Unknown vulnerability in the PKINIT Protocol for Microsoft Windows 2000, Windows XP, and Windows Server 2003 could allow a local user to obtain information and spoof a server via a man-in-the-middle (MITM) attack between a client and a domain controller when PKINIT smart card authentication is being used.
0
Attacker Value
Unknown
CVE-2005-1218
Disclosure Date: August 10, 2005 (last updated October 04, 2023)
The Microsoft Windows kernel in Microsoft Windows 2000 Server, Windows XP, and Windows Server 2003 allows remote attackers to cause a denial of service (crash) via crafted Remote Desktop Protocol (RDP) requests.
0
Attacker Value
Unknown
CVE-2005-2388
Disclosure Date: July 27, 2005 (last updated October 04, 2023)
Buffer overflow in a certain USB driver, as used on Microsoft Windows, allows attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2005-1208
Disclosure Date: June 14, 2005 (last updated October 04, 2023)
Integer overflow in Microsoft Windows 98, 2000, XP SP2 and earlier, and Server 2003 SP1 and earlier allows remote attackers to execute arbitrary code via a crafted compiled Help (.CHM) file with a large size field that triggers a heap-based buffer overflow, as demonstrated using a "ms-its:" URL in Internet Explorer.
0
Attacker Value
Unknown
CVE-2005-1205
Disclosure Date: June 14, 2005 (last updated October 04, 2023)
The Telnet client for Microsoft Windows XP, Windows Server 2003, and Windows Services for UNIX allows remote attackers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
0
Attacker Value
Unknown
CVE-2005-1212
Disclosure Date: June 14, 2005 (last updated October 04, 2023)
Buffer overflow in Microsoft Step-by-Step Interactive Training (orun32.exe) allows remote attackers to execute arbitrary code via a bookmark link file (.cbo, cbl, or .cbm extension) with a long User field.
0