cbcvebase.

Microsoft Windows 2003 Server vulnerabilities

176 known vulnerabilities affecting microsoft/windows_2003_server.

Total CVEs
176
CISA KEV
1
actively exploited
Public exploits
67
Exploited in wild
15
Severity breakdown
CRITICAL40HIGH73MEDIUM48LOW15

Vulnerabilities

Page 2 of 9
CVE-2006-3440P2CRITICALCVSS 10.0PoCv64-bitvsp12006-08-09
CVE-2006-3440 [CRITICAL] CVE-2006-3440: Buffer overflow in the Winsock API in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP Buffer overflow in the Winsock API in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via unknown vectors, aka "Winsock Hostname Vulnerability."
nvd
CVE-2006-1314P2HIGHCVSS 7.5PoCv64-bitvitanium+2 more2006-07-11
CVE-2006-1314 [HIGH] CVE-2006-1314: Heap-based buffer overflow in the Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP Heap-based buffer overflow in the Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to execute arbitrary code via crafted first-class Mailslot messages that triggers memory corruption and bypasses size restrictions on second-class Mailslot messages.
nvd
CVE-2006-2379P2CRITICALCVSS 9.3PoCvdatacenter_64-bitventerprise+5 more2006-06-13
CVE-2006-2379 [CRITICAL] CWE-119 CVE-2006-2379: Buffer overflow in the TCP/IP Protocol driver in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Ser Buffer overflow in the TCP/IP Protocol driver in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 and earlier allows remote attackers to execute arbitrary code via unknown vectors related to IP source routing.
nvd
CVE-2005-0045P2HIGHCVSS 7.5PoCventerpriseventerprise_64-bit+3 more2005-05-02
CVE-2005-0045 [HIGH] CVE-2005-0045: The Server Message Block (SMB) implementation for Windows NT 4.0, 2000, XP, and Server 2003 does not The Server Message Block (SMB) implementation for Windows NT 4.0, 2000, XP, and Server 2003 does not properly validate certain SMB packets, which allows remote attackers to execute arbitrary code via Transaction responses containing (1) Trans or (2) Trans2 commands, aka the "Server Message Block Vulnerability," and as demonstrated using Trans2 FIND_FIRST2 respo
nvd
CVE-2003-0719P3HIGHCVSS 7.5PoCvr22004-06-01
CVE-2003-0719 [HIGH] CVE-2003-0719: Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microso Buffer overflow in the Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library, as used in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attackers to execute arbitrary code via PCT 1.0 handshake packets.
nvd
CVE-2005-2123P2HIGHCVSS 7.5PoCv64-bitvitanium+2 more2005-11-29
CVE-2005-2123 [HIGH] CVE-2005-2123: Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allow remote attackers to execute arbitrary code via crafted Windows Metafile (WMF) and Enhanced Metafile (EMF) format images that lead to heap-based buffer overflows, as demonstrated using MRBP16::bCheckRecord.
nvd
CVE-2003-0717P2HIGHCVSS 7.5PoCventerpriseventerprise_64-bit+3 more2003-11-17
CVE-2003-0717 [HIGH] CVE-2003-0717: The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers to execute arbitrary code via a buffer overflow attack.
nvd
CVE-2004-0575P2CRITICALCVSS 10.0PoCv64-bitvr22004-11-03
CVE-2004-0575 [CRITICAL] CVE-2004-0575: Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows Server 2003 64-bit Edition allows remote attackers to execute arbitrary code via compressed (zipped) folders that involve an "unchecked buffer" and improper length validation.
nvd
CVE-2003-0818P3HIGHCVSS 7.5PoCventerpriseventerprise_64-bit+3 more2004-03-03
CVE-2003-0818 [HIGH] CVE-2003-0818: Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DL Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries on Windows NT 4.0, 2000, and XP, allow remote attackers to execute arbitrary code via ASN.1 BER encodings with (1) very large length fields that cause arbitrary heap data to be overwritten, or (2) modified bit stri
nvd
CVE-2004-0209P2CRITICALCVSS 10.0PoCvr22004-11-03
CVE-2004-0209 [CRITICAL] CVE-2004-0209: Unknown vulnerability in the Graphics Rendering Engine processes of Microsoft Windows 2000, Windows Unknown vulnerability in the Graphics Rendering Engine processes of Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code via (1) Windows Metafile (WMF) or (2) Enhanced Metafile (EMF) image formats that involve "an unchecked buffer."
nvd
CVE-2006-0006P2CRITICALCVSS 9.3PoCvr22006-02-14
CVE-2006-0006 [CRITICAL] CWE-119 CVE-2006-0006: Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Heap-based buffer overflow in the bitmap processing routine in Microsoft Windows Media Player 7.1 on Windows 2000 SP4, Media Player 9 on Windows 2000 SP4 and XP SP1, and Media Player 10 on XP SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted bitmap (.BMP) file that specifies a size of 0 but contains additional data.
nvd
CVE-2004-0567P3HIGHCVSS 7.5PoCv64-bitvr22004-12-31
CVE-2004-0567 [HIGH] CVE-2004-0567: The Windows Internet Naming Service (WINS) in Windows NT Server 4.0 SP 6a, NT Terminal Server 4.0 SP The Windows Internet Naming Service (WINS) in Windows NT Server 4.0 SP 6a, NT Terminal Server 4.0 SP 6, Windows 2000 Server SP3 and SP4, and Windows Server 2003 does not properly validate the computer name value in a WINS packet, which allows remote attackers to execute arbitrary code or cause a denial of service (server crash), which results in an "unchecked b
nvd
CVE-2005-2124P3HIGHCVSS 7.6PoCv64-bitvitanium+2 more2005-11-29
CVE-2005-2124 [HIGH] CVE-2005-2124: Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 a Unspecified vulnerability in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1, related to "An unchecked buffer" and possibly buffer overflows, allows remote attackers to execute arbitrary code via a crafted Windows Metafile (WMF) format image, aka "Windows Metafile Vulnerability."
nvd
CVE-2004-0200P3CRITICALCVSS 9.3PoCvr22004-09-28
CVE-2004-0200 [CRITICAL] CVE-2004-0200: Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.
nvd
CVE-2005-0416P3HIGHCVSS 7.5PoCventerpriseventerprise_64-bit+3 more2005-04-27
CVE-2005-0416 [HIGH] CVE-2005-0416: The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP thr The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allows remote attackers to execute arbitrary code via the AnimationHeaderBlock length field, which leads to a stack-based buffer overflow.
nvd
CVE-2005-0058P3HIGHCVSS 7.5PoCvr22005-08-10
CVE-2005-0058 [HIGH] CVE-2005-0058: Buffer overflow in the Telephony Application Programming Interface (TAPI) for Microsoft Windows 98, Buffer overflow in the Telephony Application Programming Interface (TAPI) for Microsoft Windows 98, Windows 98 SE, Windows ME, Windows 2000, Windows XP, and Windows Server 2003 allows attackers to elevate privileges or execute arbitrary code via a crafted message.
nvd
CVE-2006-3942P3HIGHCVSS 7.8PoCv64-bitvitanium+2 more2006-07-31
CVE-2006-3942 [HIGH] CWE-20 CVE-2006-3942: The server driver (srv.sys) in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote att The server driver (srv.sys) in Microsoft Windows NT 4.0, 2000, XP, and Server 2003 allows remote attackers to cause a denial of service (system crash) via an SMB_COM_TRANSACTION SMB message that contains a string without null character termination, which leads to a NULL dereference in the ExecuteTransaction function, possibly related to an "SMB PIPE," ak
nvd
CVE-2005-0063P3HIGHCVSS 7.5PoCventerprisevr2+2 more2005-05-02
CVE-2005-0063 [HIGH] CVE-2005-0063: The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code by modifying the CLSID stored in a file so that it is processed by HTML Application Host (MSHTA), as demonstrated using a Microsoft Word document.
nvd
CVE-2005-1978P3HIGHCVSS 7.5PoCv64-bitvitanium+2 more2005-10-12
CVE-2005-1978 [HIGH] CVE-2005-1978: COM+ in Microsoft Windows does not properly "create and use memory structures," which allows local u COM+ in Microsoft Windows does not properly "create and use memory structures," which allows local users or remote attackers to execute arbitrary code.
nvd
CVE-2006-0021P3HIGHCVSS 7.8PoCvdatacenter_64-bitventerprise+5 more2006-02-14
CVE-2006-0021 [HIGH] CWE-119 CVE-2006-0021: Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a deni Microsoft Windows XP SP1 and SP2, and Server 2003 up to SP1, allows remote attackers to cause a denial of service (hang) via an IGMP packet with an invalid IP option, aka the "IGMP v3 DoS Vulnerability."
nvd
Microsoft Windows 2003 Server vulnerabilities | cvebase