Vulnerabilities > Microsoft > Windows 2003 Server > web

DATE CVE VULNERABILITY TITLE RISK
2006-05-10 CVE-2006-0034 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft products
Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via a long fifth argument to the BuildContextW or BuildContext opcode, which triggers a bug in the NdrAllocate function, aka the MSDTC Invalid Memory Access Vulnerability.
network
low complexity
microsoft CWE-119
7.5
2006-04-12 CVE-2006-0012 Remote Code Execution vulnerability in Microsoft Windows Shell COM Object
Unspecified vulnerability in Windows Explorer in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via attack vectors involving COM objects and "crafted files and directories," aka the "Windows Shell Vulnerability."
network
high complexity
microsoft
5.1
2006-04-03 CVE-2006-1591 Heap Overflow vulnerability in Microsoft Windows Help Image Processing
Heap-based buffer overflow in Microsoft Windows Help winhlp32.exe allows user-assisted attackers to execute arbitrary code via crafted embedded image data in a .hlp file.
network
high complexity
microsoft
5.1
2006-02-14 CVE-2006-0021 Buffer Errors vulnerability in Microsoft Windows 2003 Server and Windows XP
Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a denial of service (hang) via an IGMP packet with an invalid IP option, aka the "IGMP v3 DoS Vulnerability."
network
low complexity
microsoft CWE-119
7.8
2006-02-14 CVE-2006-0013 Buffer Overflow vulnerability in Microsoft Windows 2003 Server and Windows XP
Buffer overflow in the Web Client service (WebClnt.dll) for Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote authenticated users or Guests to execute arbitrary code via crafted RPC requests, a different vulnerability than CVE-2005-1207.
network
low complexity
microsoft
6.5
2006-02-14 CVE-2006-0008 Permissions, Privileges, and Access Controls vulnerability in Microsoft Office, Windows 2003 Server and Windows XP
The ShellAbout API call in Korean Input Method Editor (IME) in Korean versions of Microsoft Windows XP SP1 and SP2, Windows Server 2003 up to SP1, and Office 2003, allows local users to gain privileges by launching the "shell about dialog box" and clicking the "End-User License Agreement" link, which executes Notepad with the privileges of the program that displays the about box.
local
low complexity
microsoft CWE-264
7.2
2006-01-10 CVE-2006-0010 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft products
Heap-based buffer overflow in T2EMBED.DLL in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 up to SP1, Windows 98, and Windows ME allows remote attackers to execute arbitrary code via an e-mail message or web page with a crafted Embedded Open Type (EOT) web font that triggers the overflow during decompression.
network
microsoft CWE-119
critical
9.3
2006-01-09 CVE-2006-0143 Resource Management Errors vulnerability in Microsoft products
Microsoft Windows Graphics Rendering Engine (GRE) allows remote attackers to corrupt memory and cause a denial of service (crash) via a WMF file containing (1) ExtCreateRegion or (2) ExtEscape function calls with arguments with inconsistent lengths.
network
low complexity
microsoft CWE-399
7.5
2005-12-28 CVE-2005-4560 Improper Input Validation vulnerability in Microsoft Windows 2003 Server and Windows XP
The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) format image with a crafted SETABORTPROC GDI Escape function call, related to the Windows Picture and Fax Viewer (SHIMGVW.DLL), a different vulnerability than CVE-2005-2123 and CVE-2005-2124, and as originally discovered in the wild on unionseek.com.
network
low complexity
microsoft CWE-20
7.5
2005-12-01 CVE-2005-3945 Remote Denial of Service vulnerability in Microsoft Windows 2000 and Windows 2003 Server
The SynAttackProtect protection in Microsoft Windows 2003 before SP1 and Windows 2000 before SP4 with Update Roll-up uses a hash of predictable data, which allows remote attackers to cause a denial of service (CPU consumption) via a flood of SYN packets that produce identical hash values, which slows down the hash table lookups.
network
low complexity
microsoft
7.8