Show filters
94 Total Results
Displaying 41-50 of 94
Sort by:
Attacker Value
Unknown

CVE-2003-0719

Disclosure Date: June 01, 2004 (last updated February 22, 2025)
Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as used in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attackers to execute arbitrary code via PCT 1.0 handshake packets.
0
Attacker Value
Unknown

CVE-2003-0813

Disclosure Date: November 17, 2003 (last updated February 22, 2025)
A multi-threaded race condition in the Windows RPC DCOM functionality with the MS03-039 patch installed allows remote attackers to cause a denial of service (crash or reboot) by causing two threads to process the same RPC request, which causes one thread to use memory after it has been freed, a different vulnerability than CVE-2003-0352 (Blaster/Nachi), CVE-2003-0715, and CVE-2003-0528, and as demonstrated by certain exploits against those vulnerabilities.
0
Attacker Value
Unknown

CVE-2003-0469

Disclosure Date: August 07, 2003 (last updated February 22, 2025)
Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via cut-and-paste operation, as demonstrated in Internet Explorer 5.0 using a long "align" argument in an HR tag.
0
Attacker Value
Unknown

CVE-2003-0010

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
Integer overflow in JsArrayFunctionHeapSort function used by Windows Script Engine for JScript (JScript.dll) on various Windows operating system allows remote attackers to execute arbitrary code via a malicious web page or HTML e-mail that uses a large array index value that enables a heap-based buffer overflow attack.
0
Attacker Value
Unknown

CVE-2002-2185

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
0
Attacker Value
Unknown

CVE-2002-1258

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Internet Explorer and other applications, allow remote attackers to read files via a Java applet with a spoofed location in the CODEBASE parameter in the APPLET tag, possibly due to a parsing error.
0
Attacker Value
Unknown

CVE-2002-1325

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a local user's username via a Java applet that accesses the user.dir system property, aka "User.dir Exposure Vulnerability."
0
Attacker Value
Unknown

CVE-2002-1257

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a Java applet that invokes COM (Component Object Model) objects in a web site or an HTML mail.
0
Attacker Value
Unknown

CVE-2002-1260

Disclosure Date: December 23, 2002 (last updated February 22, 2025)
The Java Database Connectivity (JDBC) APIs in Microsoft Virtual Machine (VM) 5.0.3805 and earlier allow remote attackers to bypass security checks and access database contents via an untrusted Java applet.
0
Attacker Value
Unknown

CVE-2002-1183

Disclosure Date: December 11, 2002 (last updated February 22, 2025)
Microsoft Windows 98 and Windows NT 4.0 do not properly verify the Basic Constraints of digital certificates, allowing remote attackers to execute code, aka "New Variant of Certificate Validation Flaw Could Enable Identity Spoofing" (CAN-2002-0862).
0