|
4881
|
-
9.3
|
HIGH
|
The QuickTime Movie Parser Filter in quartz.dll in DirectShow in Microsoft DirectX 7.0 through 9.0c on Windows 2000 SP4, Windows XP SP2 and SP3, and Windows Server 2003 SP2 performs updates to pointe…
|
CWE-20
Improper Input Validation
|
CVE-2009-1538
|
cpe:2.3:o:microsoft:windows_2000:-:sp4 cpe:2.3:o:microsoft:windows_2000:-:sp4 cpe:2.3:o:microsoft:windows_2000:-:…
|
|
|
|
|
2026-04-23 09:35
2009-07-16
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4882
|
-
9.3
|
HIGH
|
Integer overflow in the Embedded OpenType (EOT) Font Engine in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows remote attack…
|
CWE-189
Numeric Errors
|
CVE-2009-0232
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2
|
|
|
|
|
2026-04-23 09:35
2009-07-16
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4883
|
8.8
9.3
|
HIGH
Network
|
The Embedded OpenType (EOT) Font Engine (T2EMBED.DLL) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2 allows remote attackers to…
|
CWE-681
Incorrect Conversion between Numeric Types
|
CVE-2009-0231
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-07-16
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4884
|
-
9.3
|
HIGH
|
Unspecified vulnerability in the Load method in the IPersistStreamInit interface in the Active Template Library (ATL), as used in the Microsoft Video ActiveX control in msvidctl.dll in DirectShow, in…
|
CWE-94
Code Injection
|
CVE-2008-0020
|
cpe:2.3:o:microsoft:windows_2003_server:-:sp2 cpe:2.3:o:microsoft:windows_2003_server:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-23 09:35
2009-07-8
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4885
|
8.8
9.3
|
HIGH
Network
|
Stack-based buffer overflow in the CComVariant::ReadFromStream function in the Active Template Library (ATL), as used in the MPEG2TuneRequest ActiveX control in msvidctl.dll in DirectShow, in Microso…
|
CWE-119 CWE-121
Incorrect Access of Indexable Resource ('Range Error') Stack-based Buffer Overflow
|
CVE-2008-0015
|
cpe:2.3:o:microsoft:windows_2003_server:-:sp2 cpe:2.3:o:microsoft:windows_2003_server:-:sp2 cpe:2.3:o:microsoft:w…
|
|
|
|
|
2026-04-22 03:41
2009-07-8
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4886
|
-
7.2
|
HIGH
|
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 does not properly validate the user-mode input associated with the editing of an unspecified desktop parameter, which all…
|
CWE-20
Improper Input Validation
|
CVE-2009-1126
|
cpe:2.3:o:microsoft:windows_server_2008:sp2:x64 cpe:2.3:o:microsoft:windows_server_2008:sp2:x32
|
|
|
|
|
2026-04-23 09:35
2009-06-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4887
|
-
7.2
|
HIGH
|
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate an argument to an unspecified system call, which al…
|
CWE-20
Improper Input Validation
|
CVE-2009-1125
|
cpe:2.3:o:microsoft:windows_server_2008:sp2:x64 cpe:2.3:o:microsoft:windows_server_2008:sp2:x32
|
|
|
|
|
2026-04-23 09:35
2009-06-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4888
|
-
7.2
|
HIGH
|
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate user-mode pointers in unspecified error conditions,…
|
CWE-20
Improper Input Validation
|
CVE-2009-1124
|
cpe:2.3:o:microsoft:windows_server_2008:sp2:x64 cpe:2.3:o:microsoft:windows_server_2008:sp2:x32
|
|
|
|
|
2026-04-23 09:35
2009-06-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4889
|
7.8
7.2
|
HIGH
Local
|
The kernel in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 does not properly validate changes to unspecified kernel objects, which allows…
|
NVD-CWE-noinfo
|
CVE-2009-1123
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2 cpe:2.3:o:microsoft:windows_2000:-:sp4
|
|
|
|
|
2026-04-22 22:52
2009-06-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
4890
|
-
9.0
|
HIGH
|
The Windows Print Spooler in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 SP2 allows remote authenticated users to gain privileges via a craf…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0230
|
cpe:2.3:o:microsoft:windows_server_2008:-:sp2
|
|
|
|
|
2026-04-23 09:35
2009-06-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|