Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
microsoft web applications vulnerabilities and exploits
(subscribe to this query)
5
CVSSv2
CVE-2005-2087
Internet Explorer 5.01 SP4 up to 6 on various Windows operating systems, including IE 6.0.2900.2180 on Windows XP, allows remote malicious users to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference...
Microsoft Ie 5.2.3
Microsoft Ie 5.1
Microsoft Internet Explorer 5.01
Microsoft Ie 6
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 5.1
Microsoft Internet Explorer 6.0
Microsoft Internet Explorer 6.0.2900.2180
1 EDB exploit
5
CVSSv2
CVE-2005-0360
The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote malicious users to create or append to arbitrary files.
Microsoft Log Sink Class Activex Control
5.1
CVSSv2
CVE-2005-1214
Microsoft Agent allows remote malicious users to spoof trusted Internet content and execute arbitrary code by disguising security prompts on a malicious Web page.
Microsoft Windows 2003 Server 64-bit
Microsoft Windows 2000 Terminal Services
Microsoft Windows 2003 Server Web
Microsoft Windows Xp
Microsoft Windows 2003 Server Enterprise
Microsoft Windows 2003 Server Enterprise 64-bit
Microsoft Windows 2000
Microsoft Windows Me
Microsoft Windows 2003 Server Standard 64-bit
Microsoft Windows 2003 Server Datacenter 64-bit
Microsoft Windows 98se
Microsoft Windows 2003 Server Standard
Microsoft Windows 2003 Server R2
Microsoft Windows 98
7.5
CVSSv2
CVE-2005-0944
Unknown vulnerability in Microsoft Jet DB engine (msjet40.dll) 4.00.8618.0, related to insufficient data validation, allows remote malicious users to execute arbitrary code via a crafted mdb file.
Microsoft Jet
3 EDB exploits
7.5
CVSSv2
CVE-2005-0044
The OLE component in Windows 98, 2000, XP, and Server 2003, and Exchange Server 5.0 through 2003, does not properly validate the lengths of messages for certain OLE data, which allows remote malicious users to execute arbitrary code, aka the "Input Validation Vulnerability.&...
Microsoft Exchange Server 5.0
Microsoft Windows Xp
Microsoft Windows 2003 Server Web
Microsoft Windows 2003 Server Enterprise
Microsoft Windows 2003 Server Enterprise 64-bit
Microsoft Windows 2000
Microsoft Windows 98se
Microsoft Windows 2003 Server R2
Microsoft Windows Me
Microsoft Windows 2003 Server Standard
Microsoft Windows 98
7.5
CVSSv2
CVE-2005-0063
The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote malicious users to execute arbitrary code by modifying the CLSID stored in a file so that it is processed by HTML Application Host (MSHTA), a...
Microsoft Windows Xp
Microsoft Windows 2003 Server Web
Microsoft Windows 2003 Server Enterprise
Microsoft Windows 2000
Microsoft Windows 98se
Microsoft Windows Me
Microsoft Windows 2003 Server Standard
Microsoft Windows 98
Microsoft Windows 2003 Server R2
1 EDB exploit
5
CVSSv2
CVE-2005-0234
The International Domain Name (IDN) support in Safari 1.2.5 allows remote malicious users to spoof domain names using punycode encoded domain names that are decoded in URLs and SSL certificates in a way that uses homograph characters from other character sets, which facilitates p...
Apple Safari 1.2.5
10
CVSSv2
CVE-2004-0897
The Indexing Service for Microsoft Windows XP and Server 2003 does not properly validate the length of a message, which allows remote malicious users to execute arbitrary code via a buffer overflow attack.
Microsoft Windows 2003 Server R2
Microsoft Windows Xp
10
CVSSv2
CVE-2004-0597
Multiple buffer overflows in libpng 1.2.5 and previous versions, as used in multiple products, allow remote malicious users to execute arbitrary code via malformed PNG images in which (1) the png_handle_tRNS function does not properly validate the length of transparency chunk (tR...
Microsoft Msn Messenger 6.1
Greg Roelofs Libpng
Microsoft Msn Messenger 6.2
Microsoft Windows Messenger 5.0
Microsoft Windows Media Player 9
Microsoft Windows Me
Microsoft Windows 98se
3 EDB exploits
2 Github repositories
6.4
CVSSv2
CVE-2004-0845
Internet Explorer 5.01, 5.5, and 6 does not properly cache SSL content, which allows remote malicious users to obtain information or spoof content via a web site with the same host name as the target web site, whose content is cached and reused when the user visits the target web...
Microsoft Ie 6
Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »