Microsoft Visual Interdev vulnerabilities
5 known vulnerabilities affecting microsoft/visual_interdev.
Total CVEs
5
CISA KEV
0
Public exploits
4
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2008-1709CRITICALCVSS 9.3PoCv6.02008-04-09
CVE-2008-1709 [CRITICAL] CVE-2008-1709: Buffer overflow in Microsoft Visual InterDev 6.0 (SP6) allows user-assisted attackers to execute arb
Buffer overflow in Microsoft Visual InterDev 6.0 (SP6) allows user-assisted attackers to execute arbitrary code via a Studio Solution (.SLN) file with a long malformed Project line beginning with a 'Project("{}") =' sequence, probably a different vector than CVE-2008-0250.
nvd
CVE-2008-0250CRITICALCVSS 9.3PoCv6.02008-01-12
CVE-2008-0250 [CRITICAL] CWE-119 CVE-2008-0250: Buffer overflow in Microsoft Visual InterDev 6.0 (SP6) allows user-assisted attackers to execute arb
Buffer overflow in Microsoft Visual InterDev 6.0 (SP6) allows user-assisted attackers to execute arbitrary code via a Studio Solution (.SLN) file with a long Project line.
nvd
CVE-2006-1043MEDIUMCVSS 5.1PoCv6.02006-03-07
CVE-2006-1043 [MEDIUM] CWE-119 CVE-2006-1043: Stack-based buffer overflow in Microsoft Visual Studio 6.0 and Microsoft Visual InterDev 6.0 allows
Stack-based buffer overflow in Microsoft Visual Studio 6.0 and Microsoft Visual InterDev 6.0 allows user-assisted attackers to execute arbitrary code via a long DataProject field in a (1) Visual Studio Database Project File (.dbp) or (2) Visual Studio Solution (.sln).
nvd
CVE-2000-0260HIGHCVSS 7.5PoCv1.02000-04-14
CVE-2000-0260 [HIGH] CVE-2000-0260: Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denia
Buffer overflow in the dvwssr.dll DLL in Microsoft Visual Interdev 1.0 allows users to cause a denial of service or execute commands, aka the "Link View Server-Side Component" vulnerability.
nvd
CVE-1999-1591HIGHCVSS 7.5v6.01999-12-31
CVE-1999-1591 [HIGH] CVE-1999-1591: Microsoft Internet Information Services (IIS) server 4.0 SP4, without certain hotfixes released for
Microsoft Internet Information Services (IIS) server 4.0 SP4, without certain hotfixes released for SP4, does not require authentication credentials under certain conditions, which allows remote attackers to bypass authentication requirements, as demonstrated by connecting via Microsoft Visual InterDev 6.0.
nvd