Lucene search

K

Windows Embedded Compact Security Vulnerabilities

cve
cve

CVE-2016-9952

The verify_certificate function in lib/vtls/schannel.c in libcurl 7.30.0 through 7.51.0, when built for Windows CE using the schannel TLS backend, makes it easier for remote attackers to conduct man-in-the-middle attacks via a crafted wildcard SAN in a server certificate, as demonstrated by...

8.1CVSS

7.6AI Score

0.002EPSS

2018-03-12 09:29 PM
43
cve
cve

CVE-2016-9953

The verify_certificate function in lib/vtls/schannel.c in libcurl 7.30.0 through 7.51.0, when built for Windows CE using the schannel TLS backend, allows remote attackers to obtain sensitive information, cause a denial of service (crash), or possibly have unspecified other impact via a wildcard...

9.8CVSS

9.8AI Score

0.003EPSS

2018-03-12 09:29 PM
48
cve
cve

CVE-2018-0842

Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allow an elevation of privilege vulnerability due to how objects in memory are handled, aka...

7CVSS

6.8AI Score

0.001EPSS

2018-02-15 02:29 AM
97
cve
cve

CVE-2008-2160

Multiple unspecified vulnerabilities in the JPEG (GDI+) and GIF image processing in Microsoft Windows CE 5.0 allow remote attackers to execute arbitrary code via crafted (1) JPEG and (2) GIF...

7.7AI Score

0.201EPSS

2008-05-12 10:20 PM
20
cve
cve

CVE-2006-7031

Microsoft Internet Explorer 6.0.2900 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a table element with a CSS attribute that sets the position, which triggers an "unhandled exception" in...

6.8AI Score

0.214EPSS

2007-02-23 03:28 AM
19
cve
cve

CVE-2006-6908

Buffer overflow in the Bluetooth Stack COM Server in the Widcomm Bluetooth stack, as packaged as Widcomm Stack 3.x and earlier on Windows, Widcomm BTStackServer 1.4.2.10 and 1.3.2.7 on Windows, Widcomm Bluetooth Communication Software 1.4.1.03 on Windows, and the Bluetooth implementation in...

8.5AI Score

0.047EPSS

2007-01-08 08:00 PM
29
cve
cve

CVE-2001-0162

WinCE 3.0.9348 generates predictable TCP Initial Sequence Numbers (ISNs), which allows remote attackers to spoof or hijack TCP...

7.5AI Score

0.012EPSS

2005-04-14 04:00 AM
38