|
4791
|
-
4.6
|
MEDIUM
|
The kernel in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly validate ACLs on kernel objects, which allows local users to cause a denial o…
|
CWE-20
Improper Input Validation
|
CVE-2010-1890
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:*
|
|
|
|
|
2024-11-21 10:15
2010-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4792
|
-
7.2
|
HIGH
|
Double free vulnerability in the kernel in Microsoft Windows Vista SP1 and SP2, and Windows Server 2008 Gold and SP2, allows local users to gain privileges via a crafted application, related to objec…
|
CWE-399
Resource Management Errors
|
CVE-2010-1889
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:*
|
|
|
|
|
2024-11-21 10:15
2010-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4793
|
-
4.4
|
MEDIUM
|
The Windows kernel-mode drivers in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not prop…
|
CWE-20
Improper Input Validation
|
CVE-2010-1887
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2
|
|
|
|
|
2024-11-21 10:15
2010-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4794
|
7.8
9.3
|
HIGH
Local
|
Windows Shell in Microsoft Windows XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7 allows local users or remote attackers to execute arbitrary code via a crafted (1)…
|
NVD-CWE-noinfo
|
CVE-2010-2568
|
cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:win…
|
|
|
|
|
2026-04-22 19:35
2010-07-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4795
|
-
7.2
|
HIGH
|
Use-after-free vulnerability in the kernel-mode drivers in Microsoft Windows Vista SP1 and SP2 and Server 2008 Gold and SP2 allows local users to gain privileges or cause a denial of service (system …
|
CWE-399
Resource Management Errors
|
CVE-2010-2549
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2
|
|
|
|
|
2024-11-21 10:16
2010-07-3
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4796
|
-
6.8
|
MEDIUM
|
The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 Gold and SP2, Windows 7, and Server 2008 R2 allows local u…
|
CWE-94
Code Injection
|
CVE-2010-1255
|
cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:win…
|
|
|
|
|
2023-12-8 03:38
2010-06-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4797
|
-
9.3
|
HIGH
|
Multiple unspecified vulnerabilities in the Microsoft Internet Explorer 8 Developer Tools ActiveX control in Microsoft Windows 2000 SP4, Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista…
|
CWE-94
Code Injection
|
CVE-2010-0811
|
cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:windows_server_2008:r2:*
|
|
|
|
|
2023-12-8 03:38
2010-06-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4798
|
-
6.8
|
MEDIUM
|
The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 Gold and SP2, Windows 7, and Server 2008 R2 "do not proper…
|
CWE-20
Improper Input Validation
|
CVE-2010-0485
|
cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:win…
|
|
|
|
|
2023-12-8 03:38
2010-06-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4799
|
-
6.8
|
MEDIUM
|
The Windows kernel-mode drivers in win32k.sys in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2 "do not properly validate changes in cert…
|
CWE-20
Improper Input Validation
|
CVE-2010-0484
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2
|
|
|
|
|
2023-12-8 03:38
2010-06-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4800
|
-
7.2
|
HIGH
|
Unspecified vulnerability in the Windows OpenType Compact Font Format (CFF) driver in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windo…
|
CWE-20
Improper Input Validation
|
CVE-2010-0819
|
cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:windows_server_2008:r2:* cpe:2.3:o:microsoft:win…
|
|
|
|
|
2023-12-8 03:38
2010-06-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|