close
TO SUBSCRIBE, UNSUBSCRIBE, OR CHANGE YOUR SUBSCRIPTION, go to:
http://www.dragonsoft.com.tw/epaper/

DragonSoft (Chinese/English) Vulnerability and Threat Knowledge Base:
http://vdb.dragonsoft.com/

Contents:
* 41 Reported Vulnerabilities
* Sort by Risk
-------------------------------------------------

Date Reported: 2008/06/11
Name: MS08-036:Windows PGM Malformed Fragment DoS Vulnerability-2003
Risk: High
CVSS Base Score: 5.6
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3274

Date Reported: 2008/06/11
Name: MS08-036:Windows PGM Malformed Fragment DoS Vulnerability-XP
Risk: High
CVSS Base Score: 5.6
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3273

Date Reported: 2008/06/11
Name: MS08-036:Windows PGM Invalid Length DoS Vulnerability-2003
Risk: High
CVSS Base Score: 5.6
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3272

Date Reported: 2008/06/11
Name: MS08-036:Windows PGM Invalid Length DoS Vulnerability-XP
Risk: High
CVSS Base Score: 5.6
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3271

Date Reported: 2008/06/11
Name: MS08-034:Windows WINS Privilege Escalation Vulnerability-2003
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3267

Date Reported: 2008/06/11
Name: MS08-034:Windows WINS Privilege Escalation Vulnerability-2000
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3266

Date Reported: 2008/06/11
Name: MS08-033:MS MJPEG Decoder Remote Code Execution Vulnerability-2003
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3265

Date Reported: 2008/06/11
Name: MS08-033:MS MJPEG Decoder Remote Code Execution Vulnerability-XP
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3264

Date Reported: 2008/06/11
Name: MS08-033:MS MJPEG Decoder Remote Code Execution Vulnerability-2000
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3263

Date Reported: 2008/06/11
Name: MS08-033:MS DirectX SAMI File Remote Code Execution Vulnerability-2003
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3262

Date Reported: 2008/06/11
Name: MS08-033:MS DirectX SAMI File Remote Code Execution Vulnerability-XP
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3261

Date Reported: 2008/06/11
Name: MS08-033:MS DirectX SAMI File Remote Code Execution Vulnerability-2000
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3260

Date Reported: 2008/06/11
Name: MS08-032:MS Speech Components Remote Code Execution Vulnerability-2003
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3259

Date Reported: 2008/06/11
Name: MS08-032:MS Speech Components Remote Code Execution Vulnerability-XP
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3258

Date Reported: 2008/06/11
Name: MS08-032:MS Speech Components Remote Code Execution Vulnerability-2000
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3257

Date Reported: 2008/04/09
Name: MS08-023:MS IE ActiveX Control Remote Code Execution Vulnerability-2003
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3228

Date Reported: 2008/04/09
Name: MS08-023:MS IE ActiveX Control Remote Code Execution Vulnerability-XP
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3227

Date Reported: 2008/04/09
Name: MS08-023:MS IE ActiveX Control Remote Code Execution Vulnerability-2000
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3226

Date Reported: 2007/12/12
Name: MS07-064:MS DirectX SAMI File Remote Code Execution Vulnerability-2003
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3128

Date Reported: 2007/12/12
Name: MS07-064:MS DirectX SAMI File Remote Code Execution Vulnerability-XP
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3127

Date Reported: 2007/12/12
Name: MS07-064:MS DirectX SAMI File Remote Code Execution Vulnerability-2000
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3126

Date Reported: 2007/12/12
Name: MS07-064:MS DirectX WAV and AVI File Remote Code Execution Vulnerability-2003
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3125

Date Reported: 2007/12/12
Name: MS07-064:MS DirectX WAV and AVI File Remote Code Execution Vulnerability-XP
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3124

Date Reported: 2007/12/12
Name: MS07-064:MS DirectX WAV and AVI File Remote Code Execution Vulnerability-2000
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3123

Date Reported: 2006/09/13
Name: MS06-052:Windows PGM Memory Corruption Vulnerability-XP
Risk: High
CVSS Base Score: 5.6
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=2737

Date Reported: 2004/12/18
Name: MS04-045:Windows WINS Remote Memory Corruption Vulnerability-2000
Risk: High
CVSS Base Score: 10
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=2115

Date Reported: 2004/12/18
Name: MS04-045:Windows WINS Name Validation Buffer Overflow Vulnerability-2000
Risk: High
CVSS Base Score: 8
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=2112

Date Reported: 2008/06/11
Name: MS08-031:MS IE Request Header Cross-Domain Information Disclosure Vulnerability-2003
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3256

Date Reported: 2008/06/11
Name: MS08-031:MS IE Request Header Cross-Domain Information Disclosure Vulnerability-XP
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3255

Date Reported: 2008/06/11
Name: MS08-031:MS IE Request Header Cross-Domain Information Disclosure Vulnerability-2000
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3254

Date Reported: 2008/06/11
Name: MS08-031:MS IE HTML Objects Memory Corruption Vulnerability-2003
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3253

Date Reported: 2008/06/11
Name: MS08-031:MS IE HTML Objects Memory Corruption Vulnerability-XP
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3252

Date Reported: 2008/06/11
Name: MS08-031:MS IE HTML Objects Memory Corruption Vulnerability-2000
Risk: High
CVSS Base Score: 9.3
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3251

Date Reported: 2008/06/11
Name: MS08-030:Microsoft Bluetooth Stack Remote Code Execution Vulnerability-XP
Risk: Medium
CVSS Base Score: 5.3
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3250

Date Reported: 2008/06/06
Name: Apache Tomcat Host Manager Cross Site Scripting Vulnerability 2
Risk: Medium
CVSS Base Score: 4.3
Category: Web Servers
Affect OS: UNIX
Description (English): http://vdb.dragonsoft.com/detail.php?id=3249

Date Reported: 2008/06/11
Name: MS08-035:Windows Active Directory LDAP Request Validation Remote DoS Vulnerability-2003
Risk: Low
CVSS Base Score: 6.8
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3270

Date Reported: 2008/06/11
Name: MS08-035:Windows Active Directory LDAP Request Validation Remote DoS Vulnerability-XP
Risk: Low
CVSS Base Score: 6.8
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3269

Date Reported: 2008/06/11
Name: MS08-035:Windows Active Directory LDAP Request Validation Remote DoS Vulnerability-2000
Risk: Low
CVSS Base Score: 6.8
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3268

Date Reported: 2008/02/13
Name: MS08-003:Windows Active Directory LDAP Request Validation Remote DoS Vulnerability-2003
Risk: Low
CVSS Base Score: 6.8
Category: MS HotFix
Affect OS: Windows 2003
Description (English): http://vdb.dragonsoft.com/detail.php?id=3174

Date Reported: 2008/02/13
Name: MS08-003:Windows Active Directory LDAP Request Validation Remote DoS Vulnerability-XP
Risk: Low
CVSS Base Score: 6.8
Category: MS HotFix
Affect OS: Windows XP
Description (English): http://vdb.dragonsoft.com/detail.php?id=3173

Date Reported: 2008/02/13
Name: MS08-003:Windows Active Directory LDAP Request Validation Remote DoS Vulnerability-2000
Risk: Low
CVSS Base Score: 6.8
Category: MS HotFix
Affect OS: Windows 2000
Description (English): http://vdb.dragonsoft.com/detail.php?id=3172


-------------------------------------------------

Risk:
  High: Allow immediate remote, or local access or immediate execution of code or commands,
          with unauthorized privileges, and bypassing security on firewalls.
  Medium: Potential of granting access or allowing code execution by means of complex or
          lengthy exploit procedures. Examples are cross-site scripting, man-in-the-middle
          attacks, SQL injection, denial of service, information disclosure.
  Low: deny service or provide non-system information that could be used to formulate
         structured attacks on a target, but not directly gain unauthorized access.
-------------------------------------------------
Copyright (c) DragonSoft Security Associates, Inc. All rights reserved

Permission is hereby granted for the electronic redistribution of this document.
It is not to be edited or altered in any way without the express written consent of the DragonSoft Security Associates. If you wish to reprint the whole or any part of this document in any other medium excluding electronic media, please email alert@dragonsoft.com for permission.

Disclaimer: The information in the database may change without notice.
Use of this information constitutes acceptance for use in an AS IS condition.
There are NO warranties with regard to this information, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

Please send suggestions, updates, and comments to: DragonSoft vdb_adm@dragonsoft.com of DragonSoft Security Associates, Inc.

About DragonSoft Security Associates:
DragonSoft Security Associates is a leading developer in Taiwan for network security software and an active contributor to network security education.
Founded in 2002, DragonSoft offers vulnerability management solutions, including vulnerability assessment, System Security Management and intrusion prevention.

DragonSoft Security Associates, Inc. http://www.dragonsoft.com/
Taipei: 4F-8, No 351, Sec.2, Chun-Sun Road, Chun-Ho City, Taiwan 235
 Tel. +886-2-8221-5408   Fax. +886-2-8221-5476
 Hsinchu: 5F, No. 30, Lane 607, Sec. 1, Guangfu Rd., Hsinchu, Taiwan 300
Tel. +886-3-5630989    Fax. +886-3-5797758
arrow
arrow
    全站熱搜
    創作者介紹
    創作者 ivan0914 的頭像
    ivan0914

    I'n Blog 之萬象真藏

    ivan0914 發表在 痞客邦 留言(0) 人氣()