Vulnerabilities > Microsoft > Biztalk Server > 2000

DATE CVE VULNERABILITY TITLE RISK
2008-03-11 CVE-2007-1201 Code Injection vulnerability in Microsoft products
Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary code via vectors related to DataSource that trigger memory corruption, aka "Office Web Components DataSource Vulnerability."
network
microsoft CWE-94
critical
9.3
2003-05-12 CVE-2003-0118 Unspecified vulnerability in Microsoft Biztalk Server 2000/2002
SQL injection vulnerability in the Document Tracking and Administration (DTA) website of Microsoft BizTalk Server 2000 and 2002 allows remote attackers to execute operating system commands via a request to (1) rawdocdata.asp or (2) RawCustomSearchField.asp containing an embedded SQL statement.
network
low complexity
microsoft
7.5