cbcvebase.

Microsoft Windows 2003 Server vulnerabilities

176 known vulnerabilities affecting microsoft/windows_2003_server.

Total CVEs
176
CISA KEV
1
actively exploited
Public exploits
67
Exploited in wild
15
Severity breakdown
CRITICAL40HIGH73MEDIUM48LOW15

Vulnerabilities

Page 4 of 9
CVE-2007-1211P3HIGHCVSS 7.1PoCvgoldvsp1+1 more2007-04-04
CVE-2007-1211 [HIGH] CVE-2007-1211: Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, a Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to cause a denial of service (possibly persistent restart) via a crafted Windows Metafile (WMF) image that causes an invalid dereference of an offset in a kernel structure, a related issue to CVE-2005-4560.
nvd
CVE-2005-1984P3HIGHCVSS 7.5vr22005-08-10
CVE-2005-1984 [HIGH] CVE-2005-1984: Buffer overflow in the Print Spooler service (Spoolsv.exe) for Microsoft Windows 2000, Windows XP, a Buffer overflow in the Print Spooler service (Spoolsv.exe) for Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code via a malicious message.
nvd
CVE-2007-1205P3CRITICALCVSS 9.3vgoldvsp1+1 more2007-04-10
CVE-2007-1205 [CRITICAL] CVE-2007-1205: Unspecified vulnerability in Microsoft Agent (msagent\agentsvr.exe) in Windows 2000 SP4, XP SP2, and Unspecified vulnerability in Microsoft Agent (msagent\agentsvr.exe) in Windows 2000 SP4, XP SP2, and Server 2003, 2003 SP1, and 2003 SP2 allows remote attackers to execute arbitrary code via crafted URLs, which result in memory corruption.
nvd
CVE-2005-0688P4MEDIUMCVSS 5.0PoCvr22005-03-05
CVE-2005-0688 [MEDIUM] CVE-2005-0688: Windows Server 2003 and XP SP2, with Windows Firewall turned off, allows remote attackers to cause a Windows Server 2003 and XP SP2, with Windows Firewall turned off, allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet with the SYN flag set and the same destination and source address and port, aka a reoccurrence of the "Land" vulnerability (CVE-1999-0016).
nvd
CVE-2004-0201P3CRITICALCVSS 10.0venterpriseventerprise_64-bit+3 more2004-08-06
CVE-2004-0201 [CRITICAL] CVE-2004-0201: Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, M Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041.
nvd
CVE-2004-1306P3MEDIUMCVSS 5.1PoCvdatacenter_64-bitventerprise+4 more2004-12-31
CVE-2004-1306 [MEDIUM] CVE-2004-1306: Heap-based buffer overflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP throu Heap-based buffer overflow in winhlp32.exe in Windows NT, Windows 2000 through SP4, Windows XP through SP2, and Windows 2003 allows remote attackers to execute arbitrary code via a crafted .hlp file.
nvd
CVE-2006-1311P3CRITICALCVSS 9.3vsp12007-02-13
CVE-2006-1311 [CRITICAL] CVE-2006-1311: The RichEdit component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1; Office 2000 SP3, XP SP3, The RichEdit component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1; Office 2000 SP3, XP SP3, 2003 SP2, and Office 2004 for Mac; and Learning Essentials for Microsoft Office 1.0, 1.1, and 1.5 allows user-assisted remote attackers to execute arbitrary code via a malformed OLE object in an RTF file, which triggers memory corruption.
nvd
CVE-2005-0047P3HIGHCVSS 7.2PoCventerpriseventerprise_64-bit+3 more2005-05-02
CVE-2005-0047 [HIGH] CVE-2005-0047: Windows 2000, XP, and Server 2003 does not properly "validate the use of memory regions" for COM str Windows 2000, XP, and Server 2003 does not properly "validate the use of memory regions" for COM structured storage files, which allows attackers to execute arbitrary code, aka the "COM Structured Storage Vulnerability."
nvd
CVE-2008-3464P3HIGHCVSS 7.2PoCvprofessional2008-10-15
CVE-2008-3464 [HIGH] CWE-264 CVE-2008-3464: afd.sys in the Ancillary Function Driver (AFD) component in Microsoft Windows XP SP2 and SP3 and Win afd.sys in the Ancillary Function Driver (AFD) component in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP1 and SP2 does not properly validate input sent from user mode to the kernel, which allows local users to gain privileges via a crafted application, as demonstrated using crafted pointers and lengths that bypass intended ProbeForRead an
nvd
CVE-2015-2365P3HIGHCVSS 7.2PoCvr22015-07-14
CVE-2015-2365 [HIGH] CWE-264 CVE-2015-2365: win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability
nvd
CVE-2007-0025P3CRITICALCVSS 9.3v2000v2003+1 more2007-02-13
CVE-2007-0025 [CRITICAL] CWE-94 CVE-2007-0025: The MFC component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 and Visual Studio .NET 2000, 2 The MFC component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 and Visual Studio .NET 2000, 2002 SP1, 2003, and 2003 SP1 allows user-assisted remote attackers to execute arbitrary code via an RTF file with a malformed OLE object that triggers memory corruption. NOTE: this might be due to a stack-based buffer overflow in the AfxOleSetEditMenu f
nvd
CVE-2005-0050P3CRITICALCVSS 10.0v2000v2003+5 more2005-05-02
CVE-2005-0050 [CRITICAL] CWE-20 CVE-2005-0050: The License Logging service for Windows NT Server, Windows 2000 Server, and Windows Server 2003 does The License Logging service for Windows NT Server, Windows 2000 Server, and Windows Server 2003 does not properly validate the length of messages, which leads to an "unchecked buffer" and allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, aka the "License Logging Service Vulnerability."
nvd
CVE-2006-3445P3HIGHCVSS 7.5v64-bitvitanium+2 more2006-11-14
CVE-2006-3445 [HIGH] CWE-189 CVE-2006-3445: Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Wind Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow.
nvd
CVE-2004-0120P4MEDIUMCVSS 5.0PoCvr22004-06-01
CVE-2004-0120 [MEDIUM] CVE-2004-0120: The Microsoft Secure Sockets Layer (SSL) library, as used in Windows 2000, Windows XP, and Windows S The Microsoft Secure Sockets Layer (SSL) library, as used in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service via malformed SSL messages.
nvd
CVE-2005-1208P3CRITICALCVSS 10.0v64-bitvdatacenter_64-bit+6 more2005-06-14
CVE-2005-1208 [CRITICAL] CVE-2005-1208: Integer overflow in Microsoft Windows 98, 2000, XP SP2 and earlier, and Server 2003 SP1 and earlier Integer overflow in Microsoft Windows 98, 2000, XP SP2 and earlier, and Server 2003 SP1 and earlier allows remote attackers to execute arbitrary code via a crafted compiled Help (.CHM) file with a large size field that triggers a heap-based buffer overflow, as demonstrated using a "ms-its:" URL in Internet Explorer.
nvd
CVE-2006-0034P3HIGHCVSS 7.5venterpriseventerprise_64-bit+3 more2006-05-10
CVE-2006-0034 [HIGH] CWE-119 CVE-2006-0034: Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Mic Heap-based buffer overflow in the CRpcIoManagerServer::BuildContext function in msdtcprx.dll for Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0 and Windows 2000 SP2 and SP3 allows remote attackers to execute arbitrary code via a long fifth argument to the BuildContextW or BuildContext opcode, which triggers a bug in the NdrAllo
nvd
CVE-2005-1985P3HIGHCVSS 7.5vr2vsp12005-10-13
CVE-2005-1985 [HIGH] CVE-2005-1985: The Client Service for NetWare (CSNW) on Microsoft Windows 2000 SP4, XP SP1 and Sp2, and Server 2003 The Client Service for NetWare (CSNW) on Microsoft Windows 2000 SP4, XP SP1 and Sp2, and Server 2003 SP1 and earlier, allows remote attackers to execute arbitrary code due to an "unchecked buffer" when processing certain crafted network messages.
nvd
CVE-2007-0214P3CRITICALCVSS 9.3v64-bitvitanium+1 more2007-02-13
CVE-2007-0214 [CRITICAL] CVE-2007-0214: The HTML Help ActiveX control (Hhctrl.ocx) in Microsoft Windows 2000 SP3, XP SP2 and Professional, 2 The HTML Help ActiveX control (Hhctrl.ocx) in Microsoft Windows 2000 SP3, XP SP2 and Professional, 2003 SP1 allows remote attackers to execute arbitrary code via unspecified functions, related to uninitialized parameters.
nvd
CVE-2003-0528P3CRITICALCVSS 10.0venterpriseventerprise_64-bit+3 more2003-09-17
CVE-2003-0528 [CRITICAL] CVE-2003-0528: Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS S Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed RPC request with a long filename parameter, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0715.
nvd
CVE-2006-0010P3CRITICALCVSS 9.3vdatacenter_64-bitventerprise+5 more2006-01-10
CVE-2006-0010 [CRITICAL] CWE-119 CVE-2006-0010: Heap-based buffer overflow in T2EMBED.DLL in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server Heap-based buffer overflow in T2EMBED.DLL in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 up to SP1, Windows 98, and Windows ME allows remote attackers to execute arbitrary code via an e-mail message or web page with a crafted Embedded Open Type (EOT) web font that triggers the overflow during decompression.
nvd
Microsoft Windows 2003 Server vulnerabilities | cvebase