Page 67 of 637 results (0.009 seconds)

CVSS: 7.5EPSS: 77%CPEs: 62EXPL: 0

Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via a long fifth argument to the BuildContextW or BuildContext opcode, which triggers a bug in the NdrAllocate function, aka the MSDTC Invalid Memory Access Vulnerability. • http://archives.neohapsis.com/archives/fulldisclosure/2006-05/0238.html http://archives.neohapsis.com/archives/fulldisclosure/2006-05/0269.html http://secunia.com/advisories/20000 http://securityreason.com/securityalert/863 http://securitytracker.com/id?1016047 http://www.eeye.com/html/research/advisories/AD20060509a.html http://www.osvdb.org/25335 http://www.securityfocus.com/archive/1/433430/100/0/threaded http://www.securityfocus.com/archive/1/433677/100/0/threaded http://www.se • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 5.1EPSS: 91%CPEs: 30EXPL: 0

Unspecified vulnerability in Windows Explorer in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via attack vectors involving COM objects and "crafted files and directories," aka the "Windows Shell Vulnerability." • http://secunia.com/advisories/19606 http://securitytracker.com/id?1015897 http://www.kb.cert.org/vuls/id/641460 http://www.osvdb.org/24516 http://www.securityfocus.com/bid/17464 http://www.us-cert.gov/cas/techalerts/TA06-101A.html http://www.vupen.com/english/advisories/2006/1320 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-015 https://exchange.xforce.ibmcloud.com/vulnerabilities/25554 https://oval.cisecurity.org/repository/search/definition/ov •

CVSS: 5.1EPSS: 37%CPEs: 52EXPL: 2

Heap-based buffer overflow in Microsoft Windows Help winhlp32.exe allows user-assisted attackers to execute arbitrary code via crafted embedded image data in a .hlp file. desbordamiento de búfer basado en memoria dinámica (heap) en Microsoft Windows Help winhlp32.exe permite a los atacantes asistidos por el usuario ejecutar código arbitrario a través de datos de imagen incrustados creados en un archivo .hlp. • http://lists.grok.org.uk/pipermail/full-disclosure/2006-March/044748.html http://securityreason.com/securityalert/700 http://www.open-security.org/advisories/15 http://www.securityfocus.com/archive/1/430871/100/0/threaded http://www.securityfocus.com/bid/17325 https://exchange.xforce.ibmcloud.com/vulnerabilities/25573 •

CVSS: 7.8EPSS: 1%CPEs: 3EXPL: 0

The default configuration of the DNS Server service on Windows Server 2003 and Windows 2000, and the Microsoft DNS Server service on Windows NT 4.0, allows recursive queries and provides additional delegation information to arbitrary IP addresses, which allows remote attackers to cause a denial of service (traffic amplification) via DNS queries with spoofed source IP addresses. • http://dns.measurement-factory.com/surveys/sum1.html http://www.securityfocus.com/archive/1/426368/100/0/threaded http://www.us-cert.gov/reading_room/DNS-recursion121605.pdf - •

CVSS: 9.3EPSS: 95%CPEs: 11EXPL: 3

Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and XP SP1, and Media Player 10 on XP SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted bitmap (.BMP) file that specifies a size of 0 but contains additional data. • https://www.exploit-db.com/exploits/1500 https://www.exploit-db.com/exploits/1502 http://secunia.com/advisories/18835 http://securityreason.com/securityalert/423 http://securitytracker.com/id?1015627 http://www.eeye.com/html/research/advisories/AD20060214.html http://www.kb.cert.org/vuls/id/291396 http://www.securityfocus.com/archive/1/424983/100/0/threaded http://www.securityfocus.com/archive/1/425158/100/0/threaded http://www.securityfocus.com/bid/16633 http://w • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •