CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9000  CVE-2004-0572  Candidate  Buffer overflow in the Windows Program Group Converter (grpconv.exe) may allow remote attackers to execute arbitrary code via a shell: URL with a long filename and a .grp extension, which is not properly handled when the shell capability launches grpconv.exe.  Assigned (20040615)  None (candidate not yet proposed)    View
8999  CVE-2004-0571  Candidate  Microsoft Word for Windows 6.0 Converter does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via a .wri, .rtf, and .doc file sent by email or malicious web site, aka "Table Conversion Vulnerability," a different vulnerability than CVE-2004-0901.  Assigned (20040615)  None (candidate not yet proposed)    View
8998  CVE-2004-0570  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20040615)  None (candidate not yet proposed)    View
8997  CVE-2004-0569  Candidate  The RPC Runtime Library for Microsoft Windows NT 4.0 allows remote attackers to read active memory or cause a denial of service (system crash) via a malicious message, possibly related to improper length values.  Assigned (20040615)  None (candidate not yet proposed)    View
8996  CVE-2004-0568  Candidate  HyperTerminal application for Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 does not properly validate the length of a value that is saved in a session file, which allows remote attackers to execute arbitrary code via a malicious HyperTerminal session file (.ht), web site, or Telnet URL contained in an e-mail message, triggering a buffer overflow.  Assigned (20040615)  None (candidate not yet proposed)    View

Page 19144 of 20943, showing 5 records out of 104715 total, starting on record 95716, ending on 95720

Actions