Microsoft / Frontpage
22 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2013-3137 | Microsoft FrontPage 2003 SP3 does not properly parse DTDs, which allows remote attackers to obtain sensitive information via crafted XML data in a FrontPage do… | MEDIUM | 4.3 | Sep 11, 2013 |
| CVE-2008-3068 | Microsoft Crypto API 5.131.2600.2180 through 6.0, as used in Outlook, Windows Live Mail, and Office 2007, performs Certificate Revocation List (CRL) checks by… | HIGH | 7.5 | Jul 7, 2008 |
| CVE-2007-3109 | The CERN Image Map Dispatcher (htimage.exe) in Microsoft FrontPage allows remote attackers to determine the existence, and possibly partial contents, of arbitr… | MEDIUM | 6.4 | Jun 7, 2007 |
| CVE-2007-0671 KEV | Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to exe… | HIGH | 8.8 | Feb 3, 2007 |
| CVE-2006-3877 | Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office 2002, Office 2003, Office 2004 for Mac, and Office v.X for Mac allows user-assisted at… | HIGH | 9.3 | Oct 10, 2006 |
| CVE-2004-2179 | asycpict.dll, as used in Microsoft products such as Front Page 97 and 98, allows remote attackers to cause a denial of service (hang) via a JPEG image with max… | MEDIUM | 5.0 | Jul 10, 2005 |
| CVE-2005-2143 | Microsoft Front Page allows attackers to cause a denial of service (crash) via a crafted style tag in a web page. | MEDIUM | 5.0 | Jul 5, 2005 |
| CVE-2004-0573 | Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites 2001 through 2004 allows remote attacke… | HIGH | 7.5 | Sep 17, 2004 |
| CVE-2004-0200 | Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execu… | HIGH | 9.3 | Sep 17, 2004 |
| CVE-1999-1052 | Microsoft FrontPage stores form results in a default location in /_private/form_results.txt, which is world-readable and accessible in the document root, which… | MEDIUM | 5.0 | Sep 12, 2001 |
| CVE-1999-1016 | Microsoft HTML control as used in (1) Internet Explorer 5.0, (2) FrontPage Express, (3) Outlook Express 5, and (4) Eudora, and possibly others, allows remote m… | MEDIUM | 5.0 | Sep 12, 2001 |
| CVE-1999-0681 | Buffer overflow in Microsoft FrontPage Server Extensions (PWS) 3.0.2.926 on Windows 95, and possibly other versions, allows remote attackers to cause a denial… | MEDIUM | 5.0 | May 7, 2001 |
| CVE-2000-0746 | Vulnerabilities in IIS 4.0 and 5.0 do not properly protect against cross-site scripting (CSS) attacks. They allow a malicious web site operator to embed script… | HIGH | 7.5 | Sep 21, 2000 |
| CVE-2000-0710 | The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to determine the physical path of the server components by re… | MEDIUM | 5.0 | Sep 21, 2000 |
| CVE-2000-0709 | The shtml.exe component of Microsoft FrontPage 2000 Server Extensions 1.1 allows remote attackers to cause a denial of service in some components by requesting… | MEDIUM | 5.0 | Sep 21, 2000 |
| CVE-2000-0419 | The Office 2000 UA ActiveX Control is marked as "safe for scripting," which allows remote attackers to conduct unauthorized activities via the "Show Me" functi… | HIGH | 7.5 | Jul 12, 2000 |
| CVE-2000-0413 | The shtml.exe program in the FrontPage extensions package of IIS 4.0 and 5.0 allows remote attackers to determine the physical path of HTML, HTM, ASP, and SHTM… | MEDIUM | 5.0 | Jun 15, 2000 |
| CVE-2000-0260 | Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka the "Link View Server… | HIGH | 7.5 | Jun 2, 2000 |
| CVE-2000-0256 | Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available t… | HIGH | 7.5 | Apr 26, 2000 |
| CVE-2000-0153 | FrontPage Personal Web Server (PWS) allows remote attackers to read files via a .... (dot dot) attack. | MEDIUM | 5.0 | Feb 23, 2000 |
| CVE-2000-0122 | Frontpage Server Extensions allows remote attackers to determine the physical path of a virtual directory via a GET request to the htimage.exe CGI program. | MEDIUM | 5.0 | Feb 8, 2000 |
| CVE-1999-0386 | Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstan… | MEDIUM | 5.0 | Sep 29, 1999 |
Showing 1 to 22 of 22 CVEs