Vulnerabilities > Microsoft > Windows 95

DATE CVE VULNERABILITY TITLE RISK
2002-12-31 CVE-2002-1692 Buffer Overflow vulnerability in Microsoft Backup for Windows 95
Buffer overflow in backup utility of Microsoft Windows 95 allows attackers to execute arbitrary code by causing a filename with a long extension to be placed in a folder to be backed up.
local
low complexity
microsoft
3.6
2002-12-23 CVE-2002-1325 Information Disclosure vulnerability in Microsoft Java Virtual Machine user.dir Access
Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a local user's username via a Java applet that accesses the user.dir system property, aka "User.dir Exposure Vulnerability."
network
low complexity
microsoft
5.0
2002-12-23 CVE-2002-1260 Unspecified vulnerability in Microsoft products
The Java Database Connectivity (JDBC) APIs in Microsoft Virtual Machine (VM) 5.0.3805 and earlier allow remote attackers to bypass security checks and access database contents via an untrusted Java applet.
network
low complexity
microsoft
7.5
2002-12-23 CVE-2002-1258 Unspecified vulnerability in Microsoft products
Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Internet Explorer and other applications, allow remote attackers to read files via a Java applet with a spoofed location in the CODEBASE parameter in the APPLET tag, possibly due to a parsing error.
network
low complexity
microsoft
5.0
2002-12-23 CVE-2002-1257 Unspecified vulnerability in Microsoft products
Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a Java applet that invokes COM (Component Object Model) objects in a web site or an HTML mail.
network
low complexity
microsoft
critical
10.0
2002-03-08 CVE-2002-0053 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft products
Buffer overflow in SNMP agent service in Windows 95/98/98SE, Windows NT 4.0, Windows 2000, and Windows XP allows remote attackers to cause a denial of service or execute arbitrary code via a malformed management request.
network
low complexity
microsoft CWE-119
7.5
2001-07-02 CVE-2001-0238 Unspecified vulnerability in Microsoft products
Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests.
network
low complexity
microsoft
7.5
2001-01-09 CVE-2000-1039 Unspecified vulnerability in Microsoft products
Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the "NAPTHA" class of vulnerabilities.
network
low complexity
microsoft
5.0
2000-12-19 CVE-2000-0980 Unspecified vulnerability in Microsoft products
NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, which allows remote attackers to cause a broadcast storm and flood the network.
network
low complexity
microsoft
5.0
2000-12-19 CVE-2000-0979 Unspecified vulnerability in Microsoft products
File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, which allows remote attackers to bypass share access controls by sending a 1-byte password that matches the first character of the real password, aka the "Share Level Password" vulnerability.
network
low complexity
microsoft
6.4