Vulnerabilities > Microsoft > NET Framework

DATE CVE VULNERABILITY TITLE RISK
2004-09-28 CVE-2004-0200 Unspecified vulnerability in Microsoft products
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.
network
microsoft
critical
9.3
2002-07-26 CVE-2002-0409 Remote Security vulnerability in Microsoft .Net Framework 1.0
orderdetails.aspx, as made available to Microsoft .NET developers as example code and demonstrated on www.ibuyspystore.com, allows remote attackers to view the orders of other users by modifying the OrderID parameter.
network
low complexity
microsoft
5.0
2002-07-26 CVE-2002-0369 Buffer Overflow vulnerability in Microsoft .Net Framework 1.0
Buffer overflow in ASP.NET Worker Process allows remote attackers to cause a denial of service (restart) and possibly execute arbitrary code via a routine that processes cookies while in StateServer mode.
network
low complexity
microsoft
critical
10.0