Vulnerabilities > Microsoft > Windows Vista

DATE CVE VULNERABILITY TITLE RISK
2007-02-23 CVE-2006-7030 Denial of Service vulnerability in Microsoft IE 6.0
Microsoft Internet Explorer 6 SP2 and earlier allows remote attackers to cause a denial of service (crash) via certain malformed HTML, possibly involving applet and base tags without required arguments, which triggers a null pointer dereference in mshtml.dll.
network
low complexity
microsoft
5.0
2007-02-23 CVE-2007-0843 Permissions, Privileges, and Access Controls vulnerability in Microsoft products
The ReadDirectoryChangesW API function on Microsoft Windows 2000, XP, Server 2003, and Vista does not check permissions for child objects, which allows local users to bypass permissions by opening a directory with LIST (READ) access and using ReadDirectoryChangesW to monitor changes of files that do not have LIST permissions, which can be leveraged to determine filenames, access times, and other sensitive information.
local
low complexity
microsoft CWE-264
4.6
2007-02-21 CVE-2007-1070 Stack Buffer Overflow vulnerability in Trend Micro Serverprotect 5.58/5.61/5.62
Multiple stack-based buffer overflows in Trend Micro ServerProtect for Windows and EMC 5.58, and for Network Appliance Filer 5.61 and 5.62, allow remote attackers to execute arbitrary code via crafted RPC requests to TmRpcSrv.dll that trigger overflows when calling the (1) CMON_NetTestConnection, (2) CMON_ActiveUpdate, and (3) CMON_ActiveRollback functions in (a) StCommon.dll, and (4) ENG_SetRealTimeScanConfigInfo and (5) ENG_SendEMail functions in (b) eng50.dll.
network
low complexity
microsoft trend-micro
critical
10.0
2007-02-03 CVE-2007-0675 Code Injection vulnerability in Microsoft Windows Vista
A certain ActiveX control in sapi.dll (aka the Speech API) in Speech Components in Microsoft Windows Vista, when the Speech Recognition feature is enabled, allows user-assisted remote attackers to delete arbitrary files, and conduct other unauthorized activities, via a web page with an embedded sound object that contains voice commands to an enabled microphone, allowing for interaction with Windows Explorer.
network
high complexity
microsoft CWE-94
7.6
2006-12-22 CVE-2006-6696 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Microsoft products
Double free vulnerability in Microsoft Windows 2000, XP, 2003, and Vista allows local users to gain privileges by calling the MessageBox function with a MB_SERVICE_NOTIFICATION message with crafted data, which sends a HardError message to Client/Server Runtime Server Subsystem (CSRSS) process, which is not properly handled when invoking the UserHardError and GetHardErrorText functions in WINSRV.DLL.
6.9