Show filters
152 Total Results
Displaying 61-70 of 152
Sort by:
Attacker Value
Unknown

CVE-2003-0813

Disclosure Date: November 17, 2003 (last updated February 22, 2025)
A multi-threaded race condition in the Windows RPC DCOM functionality with the MS03-039 patch installed allows remote attackers to cause a denial of service (crash or reboot) by causing two threads to process the same RPC request, which causes one thread to use memory after it has been freed, a different vulnerability than CVE-2003-0352 (Blaster/Nachi), CVE-2003-0715, and CVE-2003-0528, and as demonstrated by certain exploits against those vulnerabilities.
0
Attacker Value
Unknown

CVE-2003-0661

Disclosure Date: October 20, 2003 (last updated February 22, 2025)
The NetBT Name Service (NBNS) for NetBIOS in Windows NT 4.0, 2000, XP, and Server 2003 may include random memory in a response to a NBNS query, which could allow remote attackers to obtain sensitive information.
0
Attacker Value
Unknown

CVE-2003-0528

Disclosure Date: September 17, 2003 (last updated February 22, 2025)
Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed RPC request with a long filename parameter, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0715.
0
Attacker Value
Unknown

CVE-2003-0715

Disclosure Date: September 17, 2003 (last updated February 22, 2025)
Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed DCERPC DCOM object activation request packet with modified length fields, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0528.
0
Attacker Value
Unknown

CVE-2003-0352

Disclosure Date: August 18, 2003 (last updated February 22, 2025)
Buffer overflow in a certain DCOM interface for RPC in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a malformed message, as exploited by the Blaster/MSblast/LovSAN and Nachi/Welchia worms.
0
Attacker Value
Unknown

CVE-2003-0345

Disclosure Date: August 18, 2003 (last updated February 22, 2025)
Buffer overflow in the SMB capability for Microsoft Windows XP, 2000, and NT allows remote attackers to cause a denial of service and possibly execute arbitrary code via an SMB packet that specifies a smaller buffer length than is required.
0
Attacker Value
Unknown

CVE-2003-0469

Disclosure Date: August 07, 2003 (last updated February 22, 2025)
Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via cut-and-paste operation, as demonstrated in Internet Explorer 5.0 using a long "align" argument in an HR tag.
0
Attacker Value
Unknown

CVE-2003-0227

Disclosure Date: June 09, 2003 (last updated February 22, 2025)
The logging capability for unicast and multicast transmissions in the ISAPI extension for Microsoft Windows Media Services in Microsoft Windows NT 4.0 and 2000, nsiislog.dll, allows remote attackers to cause a denial of service in Internet Information Server (IIS) and execute arbitrary code via a certain network request.
0
Attacker Value
Unknown

CVE-2003-0112

Disclosure Date: May 12, 2003 (last updated February 22, 2025)
Buffer overflow in Windows Kernel allows local users to gain privileges by causing certain error messages to be passed to a debugger.
0
Attacker Value
Unknown

CVE-2002-1561

Disclosure Date: April 02, 2003 (last updated February 22, 2025)
The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (disabled RPC service) via a malformed packet to the RPC Endpoint Mapper at TCP port 135, which triggers a null pointer dereference.
0