|
4871
|
-
9.3
|
HIGH
|
Heap-based buffer overflow in the Windows Internet Name Service (WINS) component for Microsoft Windows 2000 SP4 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted WIN…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1923
|
cpe:2.3:o:microsoft:windows_2003_server:-:sp2 cpe:2.3:o:microsoft:windows_2003_server:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4872
|
-
6.9
|
MEDIUM
|
The Message Queuing (aka MSMQ) service for Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP2, and Vista Gold does not properly validate unspecified IOCTL request data from user mode before passing …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-1922
|
cpe:2.3:o:microsoft:windows_2000:-:sp4
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4873
|
-
8.5
|
HIGH
|
Integer overflow in Avifil32.dll in the Windows Media file handling functionality in Microsoft Windows allows remote attackers to execute arbitrary code on a Windows 2000 SP4 system via a crafted AVI…
|
CWE-189
Numeric Errors
|
CVE-2009-1546
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4874
|
-
9.3
|
HIGH
|
Unspecified vulnerability in Avifil32.dll in the Windows Media file handling functionality in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Go…
|
CWE-94
Code Injection
|
CVE-2009-1545
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4875
|
8.8
9.0
|
HIGH
Network
|
Double free vulnerability in the Workstation service in Microsoft Windows allows remote authenticated users to gain privileges via a crafted RPC message to a Windows XP SP2 or SP3 or Server 2003 SP2 …
|
CWE-399 CWE-415
Resource Management Errors Double Free
|
CVE-2009-1544
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4876
|
-
2.6
|
LOW
|
ASP.NET in Microsoft .NET Framework 2.0 SP1 and SP2 and 3.5 Gold and SP1, when ASP 2.0 is used in integrated mode on IIS 7.0, does not properly manage request scheduling, which allows remote attacker…
|
CWE-20
Improper Input Validation
|
CVE-2009-1536
|
cpe:2.3:o:microsoft:windows_server_2008:-:*
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4877
|
-
9.3
|
HIGH
|
Heap-based buffer overflow in Microsoft Remote Desktop Connection (formerly Terminal Services Client) running RDP 5.0 through 6.1 on Windows, and Remote Desktop Connection Client for Mac 2.0, allows …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1133
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:- cpe:2.3:o:microsoft:win…
|
|
|
|
|
2026-04-23 09:35
2009-08-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4878
|
-
9.3
|
HIGH
|
The Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold and SP1, and Visual C++ 2005 SP1 and 2008 Gold and SP1; and Windows 2000 SP4, XP SP2 a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-2493
|
cpe:2.3:o:microsoft:windows_server_2008:-:*
|
|
|
|
|
2026-04-23 09:35
2009-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4879
|
-
9.3
|
HIGH
|
Microsoft Internet Explorer 5.01 SP4 and 6 SP1; Internet Explorer 6 for Windows XP SP2 and SP3 and Server 2003 SP2; and Internet Explorer 7 and 8 for Windows XP SP2 and SP3, Server 2003 SP2, Vista Go…
|
CWE-94
Code Injection
|
CVE-2009-1919
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-07-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4880
|
-
9.3
|
HIGH
|
The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 does not properly validate…
|
CWE-94
Code Injection
|
CVE-2009-1539
|
cpe:2.3:o:microsoft:windows_2000:-:sp4 cpe:2.3:o:microsoft:windows_2000:-:sp4 cpe:2.3:o:microsoft:windows_2000:-:…
|
|
|
|
|
2026-04-23 09:35
2009-07-16
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|