microsoft

15,080 tracked vulnerabilities.

CVE-2008-3476
Microsoft Internet Explorer <6 - Code Injection
Oct 15, 2008
EPSS 0.31
CVE-2008-3475 HIGH
Microsoft Internet Explorer 6 - Uninitialized Memory Corruption
Oct 15, 2008
CVSS 8.8
EPSS 0.40
CVE-2008-3474 MEDIUM
Microsoft Internet Explorer 6-7 - Info Disclosure
Oct 15, 2008
CVSS 6.5
EPSS 0.28
CVE-2008-3473
Microsoft Internet Explorer 6-7 - CSRF
Oct 15, 2008
EPSS 0.32
CVE-2008-3472
Microsoft Internet Explorer 6-7 - CSRF
Oct 15, 2008
EPSS 0.33
CVE-2008-3471
Microsoft Excel <2007 - Buffer Overflow
Oct 15, 2008
EPSS 0.52
CVE-2008-3466
Microsoft Host Integration Server 2000, 2004, 2006 - Unauthenticated Remote Code Execution via SNA RPC Message
Oct 15, 2008
EPSS 0.78
CVE-2008-3464
Windows XP SP2/SP3 and Windows Server 2003 SP1/SP2 - Local Privilege Escalation via AFD Kernel Input Validation
Oct 15, 2008
EPSS 0.04
CVE-2008-2252
Microsoft Windows Kernel - Local Privilege Escalation via User Mode Parameter Validation
Oct 15, 2008
EPSS 0.02
CVE-2008-2251
Microsoft Windows Kernel - Local Privilege Escalation via Unhandled Exception in System Calls
Oct 15, 2008
EPSS 0.02
CVE-2008-2250
Microsoft Windows - Privilege Escalation via Window Property Validation Bypass
Oct 15, 2008
EPSS 0.02
CVE-2008-1446
Internet Information Services 5.0-7.0 - Authenticated Remote Code Execution via IPP Integer Overflow
Oct 15, 2008
EPSS 0.46
CVE-2008-4540
Windows Mobile 6 - Unprotected WLAN Password Exposure via Auto-Completion
Oct 13, 2008
EPSS 0.02
CVE-2008-4510
Windows Vista SP1 and earlier - Denial of Service via PAGE_NOACCESS Memory Page Access
Oct 09, 2008
EPSS 0.03
CVE-2008-4493
Microsoft Digital Image 2006 Starter Edition - Arbitrary File Upload via PicturePusher ActiveX Control
Oct 08, 2008
EPSS 0.18
CVE-2008-4381
Microsoft Internet Explorer 7 - Denial of Service via JavaScript Alert Function
Oct 02, 2008
EPSS 0.18
CVE-2008-4327
Windows XP SP3 - Denial of Service via Crafted .ico File
Sep 30, 2008
EPSS 0.16
CVE-2008-4323
Windows XP - Denial of Service via Crafted ZIP File
Sep 29, 2008
EPSS 0.09
CVE-2008-4301
Microsoft Internet Information Services - Unauthenticated Password Setting via iisext.dll SetPassword Method
Sep 29, 2008
EPSS 0.17
CVE-2008-4300
Microsoft Internet Information Services - Denial of Service via GetObject Method in adsiis.dll
Sep 29, 2008
EPSS 0.14
CVE-2008-4299
Microsoft Internet Authentication Service Helper COM Component - Denial of Service via PutProperty Method
Sep 29, 2008
EPSS 0.16
CVE-2008-4295
Microsoft Windows Mobile 6.0 - Denial of Service via Bluetooth Long Name Handling
Sep 27, 2008
EPSS 0.30
CVE-2008-4127
Microsoft Internet Explorer 7 Gold 7.0.5730 and 8 Beta 8.0.6001 - Denial of Service via Crafted PNG File
Sep 18, 2008
EPSS 0.16
CVE-2008-4114
Microsoft Windows - Denial of Service via SMB WRITE_ANDX Packet Buffer Size Validation
Sep 16, 2008
EPSS 0.49
CVE-2008-4110
Microsoft SQL Server 2000 - Buffer Overflow via SQLVDirControl ActiveX Connect Method
Sep 16, 2008
EPSS 0.18