Microsoft / Windows ME
58 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2006-1313 | Microsoft JScript 5.1, 5.5, and 5.6 on Windows 2000 SP4, and 5.6 on Windows XP, Server 2003, Windows 98 and Windows Me, will "release objects early" in certain… | MEDIUM | 6.8 | Jun 13, 2006 |
| CVE-2006-2376 | Integer overflow in the PolyPolygon function in Graphics Rendering Engine on Microsoft Windows 98 and Me allows remote attackers to execute arbitrary code via… | HIGH | 7.5 | Jun 13, 2006 |
| CVE-2006-0012 | Unspecified vulnerability in Windows Explorer in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary c… | MEDIUM | 5.1 | Apr 12, 2006 |
| CVE-2006-0006 | Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and X… | HIGH | 9.3 | Feb 14, 2006 |
| CVE-2006-0010 | Heap-based buffer overflow in T2EMBED.DLL in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 up to SP1, Windows 98, and Windows ME allows remote at… | HIGH | 9.3 | Jan 10, 2006 |
| CVE-2006-0020 | An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2 on Windows Millennium, and possibly ot… | HIGH | 9.3 | Jan 10, 2006 |
| CVE-2006-0143 | Microsoft Windows Graphics Rendering Engine (GRE) allows remote attackers to corrupt memory and cause a denial of service (crash) via a WMF file containing (1)… | HIGH | 7.5 | Jan 9, 2006 |
| CVE-2005-0058 | Buffer overflow in the Telephony Application Programming Interface (TAPI) for Microsoft Windows 98, Windows 98 SE, Windows ME, Windows 2000, Windows XP, and Wi… | HIGH | 7.5 | Aug 10, 2005 |
| CVE-2005-2388 | Buffer overflow in a certain USB driver, as used on Microsoft Windows, allows attackers to execute arbitrary code. | HIGH | 7.2 | Jul 27, 2005 |
| CVE-2001-1552 | ssdpsrv.exe in Windows ME allows remote attackers to cause a denial of service by sending multiple newlines in a Simple Service Discovery Protocol (SSDP) messa… | MEDIUM | 5.0 | Jul 14, 2005 |
| CVE-2005-1214 | Microsoft Agent allows remote attackers to spoof trusted Internet content and execute arbitrary code by disguising security prompts on a malicious Web page. | MEDIUM | 5.1 | Jun 14, 2005 |
| CVE-2005-1212 | Buffer overflow in Microsoft Step-by-Step Interactive Training (orun32.exe) allows remote attackers to execute arbitrary code via a bookmark link file (.cbo, c… | HIGH | 7.5 | Jun 14, 2005 |
| CVE-2005-1191 | The Web View DLL (webvw.dll), as used in Windows Explorer on Windows 2000 systems, does not properly filter an apostrophe ("'") in the author name in a documen… | MEDIUM | 5.0 | Apr 19, 2005 |
| CVE-2005-0063 | The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute… | HIGH | 7.5 | Apr 13, 2005 |
| CVE-2005-0061 | The kernel of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via certain access requests. | HIGH | 7.2 | Apr 13, 2005 |
| CVE-2005-0060 | Buffer overflow in the font processing component of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileg… | HIGH | 7.2 | Apr 13, 2005 |
| CVE-2004-0790 | Multiple TCP/IP and ICMP implementations allow remote attackers to cause a denial of service (reset TCP connections) via spoofed ICMP error messages, aka the "… | MEDIUM | 5.0 | Apr 13, 2005 |
| CVE-2005-0416 | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allows remote attackers to execu… | HIGH | 7.5 | Feb 14, 2005 |
| CVE-2005-0057 | The Hyperlink Object Library for Windows 98, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a crafted link that triggers an "u… | HIGH | 7.5 | Feb 8, 2005 |
| CVE-2005-0053 | Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability." | HIGH | 7.5 | Feb 8, 2005 |
| CVE-2005-0044 | The OLE component in Windows 98, 2000, XP, and Server 2003, and Exchange Server 5.0 through 2003, does not properly validate the lengths of messages for certai… | HIGH | 7.5 | Feb 8, 2005 |
| CVE-2004-1319 | The DHTML Edit Control (dhtmled.ocx) allows remote attackers to inject arbitrary web script into other domains by setting a name for a window, opening a child… | MEDIUM | 5.0 | Jan 6, 2005 |
| CVE-2004-1305 | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause… | MEDIUM | 5.0 | Jan 6, 2005 |
| CVE-2004-0901 | Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote attackers to… | HIGH | 10.0 | Dec 15, 2004 |
| CVE-2004-0571 | Microsoft Word for Windows 6.0 Converter does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via a .wri, .… | HIGH | 10.0 | Dec 15, 2004 |
Showing 1 to 25 of 58 CVEs