Vulnerabilities > Microsoft > Windows XP > Low

DATE CVE VULNERABILITY TITLE RISK
2004-11-03 CVE-2004-0207 Unspecified vulnerability in Microsoft products
"Shatter" style vulnerability in the Window Management application programming interface (API) for Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows local users to gain privileges by using certain API functions to change properties of privileged programs using the SetWindowLong and SetWIndowLongPtr API functions.
local
low complexity
microsoft
2.1
2004-06-01 CVE-2004-0124 Unspecified vulnerability in Microsoft products
The DCOM RPC interface for Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause network communications via an "alter context" call that contains additional data, aka the "Object Identity Vulnerability."
network
high complexity
microsoft
2.6
2002-12-31 CVE-2002-2105 Denial of Service vulnerability in Microsoft Windows XP .Manifest
Microsoft Windows XP allows local users to prevent the system from booting via a corrupt explorer.exe.manifest file.
local
low complexity
microsoft
2.1
2002-12-31 CVE-2002-2132 Unspecified vulnerability in Microsoft Windows 2000 and Windows XP
Windows File Protection (WFP) in Windows 2000 and XP does not remove old security catalog .CAT files, which could allow local users to replace new files with vulnerable old files that have valid hash codes.
local
low complexity
microsoft
2.1
2002-12-31 CVE-2002-2283 Permissions, Privileges, and Access Controls vulnerability in Microsoft Windows XP
Microsoft Windows XP with Fast User Switching (FUS) enabled does not remove the "show processes from all users" privilege when the user is removed from the administrator group, which allows that user to view processes of other users.
1.9
2001-12-31 CVE-2001-1560 Denial of Service vulnerability in Microsoft Windows 2000 and Windows XP
Win32k.sys (aka Graphics Device Interface (GDI)) in Windows 2000 and XP allows local users to cause a denial of service (system crash) by calling the ShowWindow function after receiving a WM_NCCREATE message.
local
low complexity
microsoft
2.1
2001-12-31 CVE-2001-1570 Unspecified vulnerability in Microsoft Windows XP
Windows XP with fast user switching and account lockout enabled allows local users to deny user account access by setting the fast user switch to the same user (self) multiple times, which causes other accounts to be locked out.
local
low complexity
microsoft
2.1