CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8546 | CVE-2004-0118 | Candidate | The component for the Virtual DOS Machine (VDM) subsystem in Windows NT 4.0 and Windows 2000 does not properly validate system structures, which allows local users to access protected kernel memory and execute arbitrary code. | Assigned (20040203) | None (candidate not yet proposed) | View | |
8547 | CVE-2004-0119 | Candidate | The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code via a crafted SPNEGO NegTokenInit request during authentication protocol selection. | Assigned (20040203) | None (candidate not yet proposed) | View | |
8548 | CVE-2004-0120 | Candidate | The Microsoft Secure Sockets Layer (SSL) library, as used in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service via malformed SSL messages. | Assigned (20040203) | None (candidate not yet proposed) | View | |
8549 | CVE-2004-0121 | Entry | Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as arguments when calling OUTLOOK.EXE, which allows remote attackers to use script code in the Local Machine zone and execute arbitrary programs. | View | |||
8550 | CVE-2004-0122 | Entry | Microsoft MSN Messenger 6.0 and 6.1 does not properly handle certain requests, which allows remote attackers to read arbitrary files. | View |
Page 1710 of 20943, showing 5 records out of 104715 total, starting on record 8546, ending on 8550