Windows XP Vulnerabilities
The following list includes some of the most critical Windows XP vulnerabilities known to the security community. In any case you find that there is anything missing in this list, please let us know and we will update it as soon as possible.
- Microsoft Internet Explorer Property Change Memory Corruption Vulnerability
- Microsoft Internet Explorer mshtml.dll Dangling Pointer Vulnerability
- Microsoft Windows Shell Graphics BMP height Integer Overflow Vulnerability
- Microsoft Windows Shell Graphics BMP width Integer Overflow Vulnerability
- Microsoft Windows Shell Graphics biCompression Buffer Overflow Vulnerability
- Microsoft Internet Explorer Animation Use-after-free Vulnerability
- Microsoft Windows WmiTraceMessageVa Kernel Vulnerability
- Microsoft Windows OpenType CFF Parsing Vulnerability
- Wireshark 1.4.0 Malformed SNMP V1 Packet Denial of Service Vulnerability
- Microsoft Word 2003 MSO Null Pointer Dereference Vulnerability
- Microsoft Windows CreateWindow function callback vulnerability
- Microsoft Windows MPEG Layer-3 Audio Decoder Code Execution Vulnerability
- Microsoft Windows Help and Support Center Code Execution Vulnerability
- Apple WebKit innerHTML element Substitution Remote Code Execution Vulnerability
- Google Chrome and Safari WebKit HTML Caption Use After Free Vulnerability
- Microsoft Windows Kernel GetDCEx() Memory Corruption Vulnerability
- Windows SMTP Service DNS Query ID Vulnerabilities
- Microsoft Windows Outlook Express and Windows Mail Integer Overflow Vulnerability
- Oracle Java Runtime Environment Image File Buffer Overflow Vulnerability
- Microsoft Windows Movie Maker and Microsoft Producer IsValidWMToolsStream() Heap Overflow
- Microsoft Windows URL Handling Vulnerability
- Microsoft Windows SMB NTLM Authentication Weak Nonce Vulnerability
- Microsoft SMB Client Pool Overflow Vulnerability
- Microsoft Windows RLE Video Decompressor Remote Code Execution Vulnerability
- Microsoft Windows ShellExecute Improper Sanitization Code Execution Vulnerability
- Microsoft Internet Explorer Dynamic OBJECT Tag and URLMON Sniffing Vulnerabilities
- Microsoft Indeo Codec Memory Corruption Vulnerability
- Microsoft Windows Local Security Authority Integer Overflow Vulnerability
- Windows Kernel Multiple Vulnerabilities
- Microsoft Windows ActiveX Indexing Service Memory Corruption Vulnerability
- Windows CryptoAPI Null Truncation and Integer Overflow Vulnerabilities
- Microsoft .NET Common Language Runtime Multiple Vulnereabilities
- ActiveX Active Template Library Initialization Vulnerability
- Windows Media Runtime Remote Code Execution
- Microsoft Windows XP/Vista TCP/IP Orphaned Connections Vulnerability
- Microsoft Windows MSMQ Privilege Escalation Vulnerability
- Microsoft Workstation Service Heap Corruption Vulnerability
- Microsoft Embedded OpenType Font Engine Heap Buffer Overflow (MS09-029)
- Microsoft DirectShow QuickTime Atom Parsing Memory Corruption Vulnerability (MS09-028)
- LogRover SQL Injection Authentication Bypass
- Microsoft Internet Explorer Security Zone Restrictions Bypass
- Microsoft Windows Graphics Device Interface Integer Overflow Vulnerability (MS08-071)
- Vulnerability in SMB Allows Code Execution (MS08-068)
- Vulnerability in Server Service Allows Code Execution (MS08-067)
- Vulnerability in Windows Media Encoder 9 Allows Code Execution (MS08-053)
- Vulnerabilities in GDI+ Allow Code Execution (MS08-052)
- Vulnerability in Windows Media Player Allows Code Execution (MS08-054)
- Cumulative Security Update for Internet Explorer (MS08-045)
- Microsoft Windows Color Management Module Heap Buffer Overflow Vulnerability (MS08-046)
- Vulnerabilities in DNS Allows Spoofing (MS08-037)
- Vulnerabilities in Pragmatic General Multicast (PGM) Allows Denial of Service (MS08-036)
- Vulnerability in Active Directory Allows Denial of Service (MS08-035)
- Cumulative Security Update of ActiveX Kill Bits (MS08-032)
- Vulnerability in Bluetooth Stack Allows Code Execution (MS08-030)
- Vulnerability in Microsoft Jet Database Engine Allows Code Execution (MS08-028)
- Microsoft Windows I2O Filter Utility Driver (i2omgmt.sys) Local Privilege Escalation Vulnerability
- Microsoft Windows Graphics Rendering Engine Multiple Vulnerabilities (MS08-021)
- Microsoft GDI WMF Parsing Heap Overflow Vulnerability (MS08-021)
- Vulnerability in Windows Kernel Allows Elevation of Privilege (MS08-025)
- Security Update of ActiveX Kill Bits (MS08-023)
- Vulnerability in VBScript and JScript Scripting Engines Allows Code Execution (MS08-022)
- Vulnerabilities in GDI Allows Code Execution (MS08-021)
- Vulnerability in DNS Client Allows Spoofing (MS08-020)
- Microsoft Outlook mailto Command Line Switch Injection
- Adobe Reader and Acrobat JavaScript Insecure Method Exposure Vulnerability
- Adobe Reader Security Provider Unsafe Libary Path Vulnerability
- Adobe Reader and Acrobat Multiple Stack-based Buffer Overflow Vulnerabilities
- Vulnerabilities in Windows TCP/IP Allows Code Execution (MS08-001)
- Vulnerability in Message Queuing Allows Code Execution (MS07-065)
- Vulnerability in Macrovision Driver Allows Local Elevation of Privilege (MS07-067)
- Cumulative Security Update for Internet Explorer (MS07-069)
- Vulnerability in Windows URI Handling Could Allow Remote Code Execution (MS07-061)
- Security Update for Outlook Express and Windows Mail (MS07-056)
- Cumulative Security Update for Internet Explorer (MS07-057)
- Vulnerability in RPC Allows Denial of Service (MS07-058)
- Vulnerability in Kodak Image Viewer Allows Code Execution (MS07-055)
- Vulnerability in Windows Services for UNIX Allows Elevation of Privilege (MS07-053)
- Vulnerability in MSN Messenger and Windows Live Messenger Allows Code Execution (MS07-054)
- Vulnerabilities in Windows Media Player Allows Code Execution (MS07-047)
- Vulnerability in Microsoft XML Core Services Could Allow Remote Code Execution (MS07-042)
- Vulnerability in OLE Automation Allows Code Execution (MS07-043)
- Vulnerability in GDI Allows Code Execution (MS07-046)
- Microsoft XML Core Services XMLDOM Memory Corruption Vulnerability
- LinkedIn Toolbar (Exploit)
- Vulnerability in Microsoft Internet Information Services Allows Code Execution (MS07-041)
- Vulnerability in Win 32 API Allows Code Execution (MS07-035)
- Cumulative Security Update for Outlook Express and Windows Mail (MS07-034)
- Vulnerability in the Windows Schannel Security Package Allows Code Execution (MS07-031)
- Microsoft GDI+ Integer Division by Zero Flaw Handling .ICO Files
- Cumulative Security Update for Internet Explorer (MS07-027)
- McAfee Security Center IsOldAppInstalled ActiveX Buffer Overflow Vulnerability
- Windows Kernel Elevation of Privilege (MS07-022)
- Universal Plug and Play Remote Code Execution (MS07-019)
- Microsoft Agent Remote Code Execution (MS07-020)
- CSRSS Remote Code Execution (MS07-021)
- Universal Plug and Play Remote Code Execution (MS07-019)
- Enterasys Networks Multiple NetSight Products Multiple Vulnerabilities
- AOL Nullsoft Winamp IT Module Heap Memory Corruption (IN_MOD.DLL)
- Vulnerabilities in GDI Allows Code Execution (MS07-017)
- Windows Animated Cursor Stack Overflow Vulnerability (0-Day)
- Microsoft Windows WMF Triggerable Kernel Design Error DoS Vulnerability
- Phishing Using IE7 Local Resource Vulnerability
- Vulnerability in Step-by-Step Interactive Training Allow Code Execution (MS07-005)
- Vulnerability in Windows Shell Allows Elevation of Privilege (MS07-006)
- Vulnerability in Windows Image Acquisition Service Allows Elevation of Privilege (MS07-007)
- Vulnerability in HTML Help ActiveX Control Could Allow Remote Code Execution (MS07-008)
- Vulnerability in Microsoft Data Access Components Allows Code Execution (MS07-009)
- Vulnerability in Microsoft OLE Dialog Allows Code Execution (MS07-011)
- Cumulative Security Update for Internet Explorer (MS07-016)
- MS Internet Explorer 6 Null Pointer Dereference Exploit (mshtml.dll)
- Microsoft Windows VML Element Integer Overflow
- Vector Markup Language (VML) Code Execution (MS07-004)
- Microsoft Windows Workstation Service DoS (NetWkstaUserEnum)
- Windows Address Book Contact Record Vulnerability (MS06-076)
- Vulnerability in Windows Could Allow Elevation of Privilege (MS06-075)
- Vulnerability in Windows Media Format Could Allow Remote Code Execution (MS06-078)
- Vulnerability in SNMP Could Allow Remote Code Execution (MS06-074)
- Cumulative Security Update for Internet Explorer (MS06-072)
- Windows WorkStation NetpManageIPCConnect (MS06-070, Exploit)
- Workstation Service NetpManageIPCConnect Buffer Overflow
- Vulnerability in Workstation Service Allows Code Execution (MS06-070)
- Vulnerabilities in Macromedia Flash Player from Adobe Allows Code Execution (MS06-069)
- Vulnerability in Microsoft Agent Allows Code Execution (MS06-068)
- Cumulative Security Update for Internet Explorer (MS06-067)
- Internet Explorer 7 "mhtml:" Redirection Information Disclosure
- Vulnerabilities in Microsoft XML Core Services Allows Code Execution (MS06-061)
- Microsoft Windows Object Packager Dialog Spoofing
- Vulnerability in ASP.NET 2.0 Allows Information Disclosure (MS06-056)
- Vulnerability in Windows Explorer Allows Execution (MS06-057)
- Vulnerability in Windows Object Packager Allows Remote Execution (MS06-065)
- Vulnerabilities in TCP/IP IPv6 Allows DoS (MS06-064)
- Vulnerability in Server Service Allows Denial of Service (MS06-063)
- Microsoft Internet Information Services UTF-7 XSS Vulnerability (MS06-053)
- Internet Explorer VML Remote Buffer Overflow (XP SP2, Exploit)
- Internet Explorer COM Object Heap Overflow Download Exec (Exploit)
- Internet Explorer Compressed Content URL Heap Overflow 2
- Vulnerability in Indexing Service Allows Cross-Site Scripting (MS06-053)
- Vulnerability in Pragmatic General Multicast (PGM) Allows Code Execution (MS06-052)
- Internet Explorer Compressed Content URL Heap Overflow
- Microsoft Windows NetpIsRemote() Remote Overflow (Exploit, MS06-040)
- MS06-042 Related Internet Explorer \Crash\ is Exploitable
- CGI Script Source Code Disclosure Vulnerability in Apache for Windows
- Microsoft Windows CanonicalizePathName() Remote Code Execution (Exploit, MS06-040)
- Microsoft SRV.SYS SMB_COM_TRANSACTION DoS
- Vulnerability in HTML Help Allows Code Execution (MS06-046)
- Vulnerability in Windows Explorer Allows Code Execution (MS06-045)
- Vulnerability in Windows Kernel Could Result in Code Execution (MS06-051)
- Vulnerability in Microsoft Windows Allows Code Execution (MS06-043)
- Vulnerabilities in DNS Resolution Allows Code Execution (MS06-041)
- Vulnerability in Server Service Allows Remote Code Execution (MS06-040)
- Vulnerability in Server Service Could Allow Remote Code Execution (MS06-035)
- Vulnerability in Microsoft Internet Information Services Using Active Server Pages Could Allow Remote Code Execution (MS06-034)
- Vulnerability in DHCP Client Service Could Allow Remote Code Execution (MS06-036)
- ASP.NET Information Disclosure (MS06-033)
- Microsoft SRV.SYS Mailslot Ring0 Memory Corruption (MS06-035)
- Microsoft Excel Universal Hlink Local Buffer Overflow (Exploit)
- Windows RRAS Stack Overflow (Exploit, MS06-025)
- Microsoft Excel File Embedded Shockwave Flash Object Local Execution
- Microsoft Internet Explorer ART File Heap Corruption
- Vulnerability in Windows Media Player Could Allow Remote Code Execution (MS06-024)
- Vulnerability in TCP/IP Could Allow Remote Code Execution (MS06-032)
- Vulnerability in Server Message Block Could Allow Elevation of Privilege (MS06-030, Exploit 2)
- Vulnerability in Server Message Block Could Allow Elevation of Privilege (MS06-030, Exploit)
- Vulnerability in Server Message Block Could Allow Elevation of Privilege (MS06-030)
- Microsoft Routing and Remote Access Code Execution Vulnerabilities (MS06-025)
- Microsoft JScript Remote Code Execution (MS06-023)
- Cumulative Security Update for Internet Explorer (MS06-021)
- ART Image Rendering Remote Code Execution (MS06-022)
- Windows Restriction Local Policy Protection Bypass
- Apple QuickTime FPX Integer Overflow
- Microsoft Distributed Transaction Coordinator DoS (MS06-018)
- Internet Explorer Bundled Flash Player Code Execution (MS06-020)
- Microsoft Internet Explorer User Interface Race Condition (Exploit)
- Microsoft Internet Explorer User Interface Race Condition
- Windows Explorer COM Handling Remote Code Execution (MS06-015)
- Microsoft Data Access Components (MDAC) Function Code Execution (MS06-014)
- Microsoft FrontPage Server Extensions XSS (MS06-017)
- Outlook Express Windows Address Book File Vulnerability (MS06-016)
- Cumulative Security Update for Internet Explorer (MS06-013)
- Microsoft Internet Explorer DoS
- w3wp DoS
- Windows Media Player Plug-in for Non-Microsoft Browsers Code Execution (MS06-006) - Exploit II
- Windows Media Player Plug-in for Non-Microsoft Browsers Code Execution (MS06-006) - Exploit 1
- Microsoft Color Management Module Code Execution (MS05-036) - Exploit
- Windows Media Player Remote Code Execution MS06-005 - Exploit
- Windows Media Player BMP Buffer Overflow Exploit (MS06-005)
- ShellAbout() API Elevation of Privilege (MS06-009)
- Windows Media Player BMP Buffer Overflow (MS06-005)
- Windows Media Player Remote Code Execution (MS06-005)
- Windows Media Player Plug-in for Non-Microsoft Browsers Code Execution (MS06-006)
- TCP/IP IGMP DoS (MS06-007)
- Web Client Service Remote Code Execution (MS06-008)
- Korean Input Method Editor Privileges Elevation (MS06-009)
- WMF Multiple DoS Buffer Overflow Vulnerabilities
- What A Click! (HTA, Microsoft Agent)
- Microsoft Windows WMF Buffer Overflow (Exploit Metasploit)
- Microsoft Windows Wireless Exposure on Laptops
- Apple QuickTime Malformed GIF Heap Overflow
- Apple QuickTime QTIF Stack Overflow
- Vulnerability in Embedded Web Fonts Allows Code Execution (MS06-002)
- Windows Embedded Open Type (EOT) Font Heap Overflow
- Cisco Security Agent Vulnerable to Crafted IP Attack
- Apple QuickTime STSD Atom Heap Overflow
- Apple iTunes Heap Overflow (QuickTime.qts)
- Vulnerability in Graphics Rendering Engine Allows Remote Code Execution (MS06-001)
- MSDTC Arbitrary Opposite Memory Write Flaw (Exploit)
- Vulnerability in Graphics Rendering Engine Allows Remote Code Execution
- Microsoft Internet Explorer Multiple DoS (datasrc, mshtml.dll)
- Windows Metafile mtNoObjects (MS05-053, DoS, Exploit)
- Microsoft Internet Explorer Keyboard Shortcut Processing
- Internet Explorer Multiple Download Dialog Vulnerabilities (MS05-054)
- Microsoft Office InfoPath 2003 Form Handling DoS
- Land Attacks Still Going Strong
- Cumulative Security Update for Internet Explorer (MS05-054)
- Microsoft Windows Wireless Zero Multiple Vulnerabilities (Information Disclosure, Authentication Bypass)
- Microsoft Windows CreateRemoteThread DoS (Exploit)
- Vulnerabilities in Graphics Rendering Engine Allows Code Execution (MS05-053)
- Windows Metafile Multiple Heap Overflows (MS05-053)
- Cumulative Security Update for Internet Explorer (MS05-052)
- Vulnerabilities in MSDTC and COM+ Allows Remote Code Execution (MS05-051)
- Vulnerability in DirectShow Allows Remote Code Execution (MS05-050)
- Vulnerabilities in Windows Shell Allows Remote Code Execution (MS05-049)
- Vulnerability in the Microsoft Collaboration Data Objects Allows Remote Code Execution (MS05-048)
- Plug and Play Vulnerability Allows Remote Code Execution and Local Elevation of Privilege (MS05-047)
- Vulnerability in the Client Service for NetWare Allows Remote Code Execution (MS05-046)
- Vulnerability in Network Connection Manager Allows DoS (MS05-045)
- Windows FTP Client Allows File Transfer Location Tampering (MS05-044)
- Windows XP SP2 TFTP Client Local Buffer Overflow
- Windows XP Firewall Bypassing (Registry Based)
- Microsoft Windows CSRSS Local Privileges Escalation (MS05-018, Exploit)
- Microsoft Registry Editor Long String Key Hiding
- Microsoft Internet Explorer Msdds.dll Code Execution
- Vulnerability in Plug and Play Allows Remote Code Execution and Elevation of Privilege (MS05-039, Exploit_)
- Cumulative Security Update for Internet Explorer (MS05-038, Exploit)
- Windows 2000 Plug and Play Universal Exploit (MS05-039)
- Vulnerability in JView Profiler Could Allow Remote Code Execution (MS05-037)
- Microsoft Internet Explorer COM Objects Instantiation (Exploit, MS05-038)
- Vulnerabilities in Kerberos Allow DoS, Information Disclosure, and Spoofing (MS05-042)
- Vulnerability in Telephony Service Allows Remote Code Execution (MS05-040)
- Vulnerability in Plug and Play Allows Remote Code Execution and Elevation of Privilege (MS05-039)
- Cumulative Security Update for Internet Explorer (MS05-038)
- Vulnerability in Remote Desktop Protocol Allows DoS (MS05-041)
- Vulnerability in Microsoft Color Management Module Could Allow Remote Code Execution (MS05-036)
- Microsoft Windows NTFS Improper Handler Closing
- Blank Administrator Password on OEM Windows XP Installation
- Vulnerability in Step-by-Step Interactive Training Allows Remote Code Execution (MS05-031)
- Microsoft Windows Interactive Training Buffer Overflow (MS05-031)
- Microsoft Telnet Client Allows Information Disclosure (MS05-033)
- Cumulative Security Update for Internet Explorer (MS05-025)
- Cumulative Security Update of Outlook Express (MS05-030)
- Vulnerability in Web Client Service Allows Remote Code Execution (MS05-028)
- Microsoft RDP Man in the Middle Vulnerability
- Vulnerability in OLE and COM Allows Remote Code Execution (Exploit, MS05-012)
- Microsoft IE Recursive Scripting, Embedded Files, window() and Restricted Sites DoS
- Microsoft Windows IPv6 DoS
- Microsoft Windows Land Attack Vulnerability (IPv6)
- Vulnerabilities in TCP/IP Allow Remote Code Execution and DoS (MS05-019, Exploit, Perl)
- ICMP Attacks Against TCP Vulnerability Exploit
- Multiple Vulnerabilities in Internet Explorer (Heap Corruption, Race Condition)
- Buffer Overflow Vulnerability in Microsoft Windows (CONSOLE_STATE_INFO, MS05-018)
- Microsoft MSHTA Script Execution Vulnerability
- Cumulative Security Update for Internet Explorer (MS05-020)
- Explorer.exe WMF Parsing Causes a DoS
- Windows Server 2003 and XP SP2 LAND Vulnerability
- Microsoft Internet Explorer createControlRange() Memory Corruption
- Microsoft Internet Explorer Multiple Vulnerabilities (Content-Disposition, codebase)
- Windows SMB Client Transaction Response Handling Technical Details (MS05-011)
- MSN Messenger PNG Image Parsing Vulnerability (Technical Details and Exploit)
- Vulnerability in Hyperlink Object Library Allows Remote Code Execution (MS05-015)
- Vulnerability in the DHTML Editing Component ActiveX Control Allows Code Execution (MS05-013)
- Vulnerability in OLE and COM Allows Remote Code Execution (MS05-012)
- Vulnerability in Server Message Block Allows Remote Code Execution (MS05-011)
- Vulnerability in Windows Shell Allows Remote Code Execution (MS05-008)
- Vulnerability in HTML Help Allows Code Execution (MS05-001)
- Vulnerability in Cursor and Icon Format Handling Allows Remote Code Execution (MS05-002)
- Vulnerability in the Indexing Service Allows Remote Code Execution (MS05-003)
- Microsoft Internet Explorer XP SP2 Fully Automated Remote Compromise
- Microsoft Windows winhlp32.exe Heap Overflow Vulnerability
- Vulnerabilities in Windows Kernel and LSASS Allows Elevation of Privilege (MS04-044)
- Vulnerability In HyperTerminal Allows Code Execution (MS04-043)
- Windows XP SP2 Popup Blocker Bypassing
- Cumulative Security Update for Internet Explorer (889293, MS04-040)
- How to Break Windows XP SP2 (Drag and Drop media files)
- SetWindowLong Shatter Attacks
- Microsoft IIS WebDAV (XML Parser) Attribute Blowup DoS
- Vulnerability in Windows Shell Allows Remote Code Execution (MS04-037)
- Vulnerability in SMTP Allows Remote Code Execution (MS04-035)
- Vulnerability in NetDDE Could Allow Remote Code Execution (MS04-031)
- Vulnerability in Compressed (zipped) Folders Allows Remote Code Execution (MS04-034)
- Vulnerability in WebDAV XML Message Handler DoS (MS04-030)
- Buffer Overrun in JPEG Processing (GDI+) Allows Code Execution (MS04-028)
- Microsoft GDIPlus.DLL JPEG Parsing Engine Buffer Overflow (Detailed Analysis of MS04-028)
- Microsoft Windows XP Task Scheduler Universal Exploit (MS04-022)
- Cumulative Security Update for Internet Explorer (MS04-025)
- Internet Explorer Method Cache Location Variant Trust Leads to Script Execution
- Microsoft Windows 2K/XP Task Scheduler Vulnerability (Exploit, MS04-022)
- Unchecked Buffer in mstask.dll
- HtmlHelp CHM File Heap Overflow
- Outlook Express Cumulative Security Update (MS04-18)
- Multiple Antivirus Scanners DoS During Processing of Malformed Compressed Archives
- Vulnerability in DirectPlay Could Allow DoS (MS04-016)
- Vulnerability in Help and Support Center Remote Code Execution (MS04-015)
- Windows Help Center Command Execution (Technical Details, HSC, Dvdupgrade)
- Technical Description of the SSL PCT Vulnerability
- Microsoft Explorer and Internet Explorer Long Share Name Buffer Overflow
- MSWebDVD Class (mswebdvd.dll) Null Pointer Assignment
- Windows Local Security Authority Service Remote Buffer Overflow (MS04-011)
- Microsoft Internet Explorer Cross Frame Scripting Restriction Bypass
- Dell TrueMobile Wireless Help Privilege Escalation Vulnerability
- AOL Instant Messenger/Microsoft Internet Explorer Remote Code Execution
- Microsoft ASN.1 Library Length Overflow And Bit String Heap Corruption
- Microsoft ASN.1 Library Vulnerability Could Allow Code Execution (MS04-007)
- Buffer Overrun in MDAC Function Could Allow Code Execution (MS04-003)
- DCE RPC Vulnerabilities New Attack Vectors Analysis
- Windows Workstation Service Remote Buffer Overflow (Exploit)
- Buffer Overrun in Microsoft FrontPage Server Extensions Could Allow Code Execution (Technical Details, MS03-051)
- Buffer Overrun in the ListBox and in the ComboBox Control Could Allow Code Execution (MS03-045)
- Buffer Overrun in Windows Help and Support Center Could Lead to System Compromise (MS03-044)
- Vulnerability in Authenticode Verification Could Allow Remote Code Execution (MS03-041)
- Buffer Overrun in Messenger Service Could Allow Code Execution (MS03-043)
- Buffer Overrun In RPCSS Service Could Allow Code Execution
- Flaw in NetBIOS Could Lead to Information Disclosure
- Windows MIDI Decoder (QUARTZ.DLL) Heap Corruption
- Unchecked Buffer in DirectX Could Enable System Compromise
- Unchecked Buffer in Windows Shell Could Enable System Compromise (XP)
- Buffer Overrun in RPC Interface Could Allow Code Execution
- Vulnerability in Microsoft\s HTML Converter Could Allow Code Execution
- Buffer Overrun in Windows Kernel Message Handling could Lead to Elevated Privileges
- Additional Details Released on MS Windows XP Redirector Buffer Overflow Vulnerability
- Flaw in RPC Endpoint Mapper Could Allow Denial of Service Attacks
- Heap Overflow in Windows Script Engine
- Flaw in Windows Script Engine Could Allow Code Execution
- Unchecked Buffer in Windows Redirector Could Allow Privilege Elevation
- Unchecked Buffer in Locator Service Could Lead to Code Execution
- Unchecked Buffer in Windows Shell Could Enable System Compromise
- Flaw in SMB Signing Could Enable Group Policy to be Modified
- User Downgraded from Administrator to User Retains the Ability to List Other User\s Running Tasks
- Unchecked Buffer in File Decompression Functions Could Lead to Code Execution
- Unchecked Buffer in PPTP Implementation Could Enable Denial of Service Attacks
- Flaw in Windows XP Help and Support Center Could Enable File Deletion
- Windows Help Buffer Overflow (Additional details)
- Unchecked Buffer in Windows Help Facility Could Enable Code Execution
- Flaw in Services for UNIX 3.0 Interix SDK Could Allow Code Execution
- Buffer Overrun in SmartHTML Interpreter Could Allow Code Execution
- Cryptographic Flaw in RDP Protocol Can Lead to Information Disclosure
- NetMeeting 3.01 Local RDS Session Hijacking
- Microsoft Windows XP Remote Desktop Denial of Service Vulnerability
- Microsoft Windows Remote Desktop Protocol Checksum and Keystroke Vulnerabilities
- Certificate Validation Flaw Could Enable Identity Spoofing
- Flaw in Certificate Enrollment Control Could Allow Deletion of Digital Certificates
- Unchecked Buffer in Network Share Provider Can Lead to Denial of Service
- Unchecked Buffer in Remote Access Service Phonebook Could Lead to Code Execution
- Unchecked buffer in the Multiple UNC Provider Could Enable Code Execution
- Malformed Data Transfer Request Causes Windows SMTP Service to Fail
- Unchecked Buffer in SNMP Service Could Enable Arbitrary Code Execution
- Windows Media Player .ASF Processor Buffer Overflow Vulnerability
- Invalid Universal Plug and Play Request Can Disrupt System Operation
- Additional Details Released on the IIS Remote Buffer Overflow (Indexing Service, IDA)