Vulnerabilities > Microsoft

DATE CVE VULNERABILITY TITLE RISK
2001-06-27 CVE-2001-0242 Buffer Overflow vulnerability in Microsoft Windows Media Player 6.3/6.4/7
Buffer overflows in Microsoft Windows Media Player 7 and earlier allow remote attackers to execute arbitrary commands via (1) a long version tag in an .ASX file, or (2) a long banner tag, a variant of the ".ASX Buffer Overrun" vulnerability as discussed in MS:MS00-090.
network
low complexity
microsoft
7.5
2001-06-27 CVE-2001-0241 Buffer Overflow vulnerability in Microsoft IIS 5.0 .printer ISAPI Extension
Buffer overflow in Internet Printing ISAPI extension in Windows 2000 allows remote attackers to gain root privileges via a long print request that is passed to the extension through IIS 5.0.
network
low complexity
microsoft
critical
10.0
2001-06-27 CVE-2001-0240 Unspecified vulnerability in Microsoft Word
Microsoft Word before Word 2002 allows attackers to automatically execute macros without warning the user via a Rich Text Format (RTF) document that links to a template with the embedded macro.
local
low complexity
microsoft
4.6
2001-06-27 CVE-2001-0237 Unspecified vulnerability in Microsoft Windows 2000
Memory leak in Microsoft 2000 domain controller allows remote attackers to cause a denial of service by repeatedly connecting to the Kerberos service and then disconnecting without sending any data.
network
low complexity
microsoft
5.0
2001-06-18 CVE-2001-0373 Unspecified vulnerability in Microsoft Windows 2000 and Windows NT
The default configuration of the Dr.
local
low complexity
microsoft
2.1
2001-06-02 CVE-2001-0322 Unspecified vulnerability in Microsoft Internet Explorer, Outlook and Outlook Express
MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.
network
low complexity
microsoft
5.0
2001-06-02 CVE-2001-0261 Unspecified vulnerability in Microsoft Windows 2000
Microsoft Windows 2000 Encrypted File System does not properly destroy backups of files that are encrypted, which allows a local attacker to recover the text of encrypted files.
local
low complexity
microsoft
2.1
2001-06-02 CVE-2001-0151 Unspecified vulnerability in Microsoft Internet Information Services 5.0
IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.
network
low complexity
microsoft
5.0
2001-06-02 CVE-2001-0149 Unspecified vulnerability in Microsoft Internet Explorer
Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.
network
low complexity
microsoft
5.0
2001-06-02 CVE-2001-0148 Unspecified vulnerability in Microsoft Windows Media Player 7
The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the "Frame Domain Verification" vulnerability.
network
low complexity
microsoft
7.5