11328 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2003-0910
Software Genérico Windows
N/A
UNKNOWN
EPSS
6.0%
2003 2 PoCs

The NtSetLdtEntries function in the programming interface for the Local Descriptor Table (LDT) in Windows NT 4.0 and Windows 2000 allows local attackers to gain access to kernel memory and execute arbitrary code via an expand-down data segment descriptor descriptor that points to protected memory.

CVE-2003-0109
Software Genérico Windows
N/A
UNKNOWN
EPSS
88.7%
2003 1 PoC

Buffer overflow in ntdll.dll on Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote attackers to execute arbitrary code, as demonstrated via a WebDAV request to IIS 5.0.

CVE-2003-0906
Software Genérico Windows
N/A
UNKNOWN
EPSS
50.8%
2003 1 PoC

Buffer overflow in the rendering for (1) Windows Metafile (WMF) or (2) Enhanced Metafile (EMF) image formats in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, and XP SP1 allows remote attackers to execute arbitrary code via a malformed WMF or EMF image.

CVE-2014-2838
Software Genérico Web Database Windows
N/A
UNKNOWN
EPSS
0.2%
2014 2 PoCs

Multiple cross-site request forgery (CSRF) vulnerabilities in the GD Star Rating plugin 19.22 for WordPress allow remote attackers to hijack the authentication of administrators for requests that conduct (1) SQL injection attacks via the s parameter in the gd-star-rating-stats page to wp-admin/admin.php or (2) cross-site scripting (XSS) attacks via unspecified vectors.

CVE-2015-1723
Software Genérico Windows
N/A
UNKNOWN
EPSS
10.9%
2015 1 PoC

Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka "Microsoft Windows Station Use After Free Vulnerability."

CVE-2003-0812
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
81.6%
2003 3 PoCs

Stack-based buffer overflow in a logging function for Windows Workstation Service (WKSSVC.DLL) allows remote attackers to execute arbitrary code via RPC calls that cause long entries to be written to a debug log file ("NetSetup.LOG"), as demonstrated using the NetAddAlternateComputerName API.

CVE-2003-0533
Software Genérico Windows
N/A
UNKNOWN
EPSS
89.0%
2003 2 PoCs

Stack-based buffer overflow in certain Active Directory service functions in LSASRV.DLL of the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attackers to execute arbitrary code via a packet that causes the DsRolerUpgradeDownlevelServer function to create long debug entries for the DCPROMO.LOG log file, as exploited by the Sasser worm.

CVE-2003-0227
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
63.4%
2003 2 PoCs

The logging capability for unicast and multicast transmissions in the ISAPI extension for Microsoft Windows Media Services in Microsoft Windows NT 4.0 and 2000, nsiislog.dll, allows remote attackers to cause a denial of service in Internet Information Server (IIS) and execute arbitrary code via a certain network request.

CVE-2003-0172
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
22.4%
2003 1 PoC

Buffer overflow in openlog function for PHP 4.3.1 on Windows operating system, and possibly other OSes, allows remote attackers to cause a crash and possibly execute arbitrary code via a long filename argument.

CVE-2003-0170
Software Genérico Windows
N/A
UNKNOWN
EPSS
3.8%
2003 1 PoC

Unknown vulnerability in ftpd in IBM AIX 5.2, when configured to use Kerberos 5 for authentication, allows remote attackers to gain privileges via unknown attack vectors.

CVE-2003-0968
Software Genérico Windows
N/A
UNKNOWN
EPSS
2.5%
2003 1 PoC

Stack-based buffer overflow in SMB_Logon_Server of the rlm_smb experimental module for FreeRADIUS 0.9.3 and earlier allows remote attackers to execute arbitrary code via a long User-Password attribute.

CVE-2003-0686
Software Genérico Windows
N/A
UNKNOWN
EPSS
49.3%
2003 1 PoC

Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute arbitrary code.

CVE-2003-0605
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
60.6%
2003 1 PoC

The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function.

CVE-2015-9463
Software Genérico Web Cloud Windows
N/A
UNKNOWN
EPSS
6.5%
2015 1 PoC

The s3bubble-amazon-s3-audio-streaming plugin 2.0 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/content/downloader.php path parameter.

CVE-2023-2744
WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting Web Database Windows
N/A
UNKNOWN
EPSS
28.4%
2023 3 PoCs

The ERP WordPress plugin before 1.12.4 does not properly sanitise and escape the `type` parameter in the `erp/v1/accounting/v1/people` REST API endpoint before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

CVE-2003-0642
Software Genérico Windows
N/A
UNKNOWN
EPSS
0.1%
2003 1 PoC

WatchGuard ServerLock for Windows 2000 before SL 2.0.4 allows local users to access kernel memory via a symlink attack on \Device\PhysicalMemory.

CVE-2003-0807
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
48.6%
2003 2 PoCs

Buffer overflow in the COM Internet Services and in the RPC over HTTP Proxy components for Microsoft Windows NT Server 4.0, NT 4.0 Terminal Server Edition, 2000, XP, and Server 2003 allows remote attackers to cause a denial of service via a crafted request.

CVE-2003-0119
Software Genérico Windows
N/A
UNKNOWN
EPSS
2.6%
2003 1 PoC

The secldapclntd daemon in AIX 4.3, 5.1 and 5.2 uses an Internet socket when communicating with the loadmodule, which allows remote attackers to directly connect to the daemon and conduct unauthorized activities.

CVE-2003-0907
Software Genérico Windows
N/A
UNKNOWN
EPSS
33.8%
2003 1 PoC

Help and Support Center in Microsoft Windows XP SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code via quotation marks in an hcp:// URL, which are not quoted when constructing the argument list to HelpCtr.exe.

CVE-2003-0641
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
0.1%
2003 1 PoC

WatchGuard ServerLock for Windows 2000 before SL 2.0.3 allows local users to load arbitrary modules via the OpenProcess() function, as demonstrated using (1) a DLL injection attack, (2) ZwSetSystemInformation, and (3) API hooking in OpenProcess.