Skip to main content

Vendor/product archive

microsoft / windows_xp CVEs

Beta · best-effort

1,351 CVEs tagged to microsoft / windows_xp508 Critical, 458 High, 354 Medium, 31 Low, 0 Unrated.

CVE-2007-3437

Published Jun 27, 2007

AOL Instant Messenger (AIM) 6.1.32.1 on Windows XP allows remote attackers to cause a denial of service (application crash) via a malformed header value in a SIP INVITE message, a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2007-3406

Published Jun 26, 2007

Multiple absolute path traversal vulnerabilities in Microsoft Internet Explorer 6 on Windows XP SP2 allow remote attackers to access arbitrary local files via the file: URI in the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-3376

Published Jun 25, 2007

Buffer overflow in Apple Safari 3.0.2 on Windows XP SP2 allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long v…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-3350

Published Jun 22, 2007

AOL Instant Messenger (AIM) 6.1.32.1 on Windows XP allows remote attackers to cause a denial of service (application hang) via a flood of spoofed SIP INVITE requests.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-7206

Published Jun 22, 2007

Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by creating a ADODB.Recordset object and making a series of calls to t…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2007-3274

Published Jun 19, 2007

Apple Safari 3.0 and 3.0.1 on Windows XP SP2 allows attackers to cause a denial of service (application crash) via JavaScript that sets the document.location variable, as demonstr…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2237

Published Jun 6, 2007

Microsoft Windows Graphics Device Interface (GDI+, GdiPlus.dll) allows context-dependent attackers to cause a denial of service (crash) via an ICO file with an InfoHeader containi…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0933

Published Jun 5, 2007

Buffer overflow in the wireless driver 6.0.0.18 for D-Link DWL-G650+ (Rev. A1) on Windows XP allows remote attackers to cause a denial of service (crash) and possibly execute arbi…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2736

Published May 17, 2007

PHP remote file inclusion vulnerability in index.php in Achievo 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the config_atkroot parameter.

CVSS 10.0 · Critical

CVE-2007-1898

Published May 16, 2007

formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.

CVSS 5.8 · Medium
Showing 1,026-1,050 of 1,351 CVEsPage 42 of 55