CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8626  CVE-2004-0198  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20040311)  None (candidate not yet proposed)    View
8627  CVE-2004-0199  Candidate  Help and Support Center in Microsoft Windows XP and Windows Server 2003 SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code, as demonstrated using certain hcp:// URLs that access the DVD Upgrade capability (dvdupgrd.htm).  Assigned (20040311)  None (candidate not yet proposed)    View
8628  CVE-2004-0200  Candidate  Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.  Assigned (20040311)  None (candidate not yet proposed)    View
8629  CVE-2004-0201  Candidate  Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041.  Assigned (20040311)  None (candidate not yet proposed)    View
8630  CVE-2004-0202  Candidate  IDirectPlay4 Application Programming Interface (API) of Microsoft DirectPlay 7.0a thru 9.0b, as used in Windows Server 2003 and earlier allows remote attackers to cause a denial of service (application crash) via a malformed packet.  Assigned (20040311)  None (candidate not yet proposed)    View

Page 20106 of 20943, showing 5 records out of 104715 total, starting on record 100526, ending on 100530

Actions