Vulnerabilities (CVE)

Filtered by vendor Microsoft Subscribe
Filtered by product Windows 98
Total 100 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0612 1 Microsoft 2 Windows 95, Windows 98 2024-11-20 5.0 MEDIUM N/A
Windows 95 and Windows 98 do not properly process spoofed ARP packets, which allows remote attackers to overwrite static entries in the cache table.
CVE-2000-0404 1 Microsoft 5 Terminal Server, Windows 2000, Windows 95 and 2 more 2024-11-20 5.0 MEDIUM N/A
The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the "ResetBrowser Frame" vulnerability.
CVE-2000-0347 1 Microsoft 2 Windows 95, Windows 98 2024-11-20 5.0 MEDIUM N/A
Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL source name.
CVE-2000-0330 1 Microsoft 2 Windows 95, Windows 98 2024-11-20 7.6 HIGH N/A
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability.
CVE-2000-0305 2 Be, Microsoft 6 Beos, Terminal Server, Windows 2000 and 3 more 2024-11-20 7.8 HIGH N/A
Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by sending a large number of identical fragmented IP packets, aka jolt2 or the "IP Fragment Reassembly" vulnerability.
CVE-2000-0168 1 Microsoft 3 Windows 95, Windows 98, Windows 98se 2024-11-20 5.0 MEDIUM N/A
Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device names, aka the "DOS Device in Path Name" vulnerability.
CVE-2000-0155 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2024-11-20 7.2 HIGH N/A
Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive.
CVE-2000-0129 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2024-11-20 2.1 LOW N/A
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.
CVE-2000-0073 1 Microsoft 3 Windows 2000, Windows 98, Windows Nt 2024-11-20 5.0 MEDIUM N/A
Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word.
CVE-1999-1593 1 Microsoft 3 Windows 2000, Windows 95, Windows 98 2024-11-20 7.6 HIGH N/A
Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service (connectivity loss) or steal credentials via a 1Ch registration that causes WINS to change the domain controller to point to a malicious server. NOTE: this problem may be limited when Windows 95/98 clients are used, or if the primary domain controller becomes unavailable.
CVE-1999-1254 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2024-11-20 5.0 MEDIUM N/A
Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, which causes Windows to change its routing tables.
CVE-1999-1201 1 Microsoft 2 Windows 95, Windows 98 2024-11-20 5.0 MEDIUM N/A
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing.
CVE-1999-0975 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2024-11-20 4.6 MEDIUM N/A
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed.
CVE-1999-0918 1 Microsoft 4 Windows 2000, Windows 95, Windows 98 and 1 more 2024-11-20 7.8 HIGH N/A
Denial of service in various Windows systems via malformed, fragmented IGMP packets.
CVE-1999-0749 1 Microsoft 2 Windows 95, Windows 98 2024-11-20 2.6 LOW N/A
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
CVE-1999-0717 1 Microsoft 5 Excel, Windows 2000, Windows 95 and 2 more 2024-11-20 2.6 LOW N/A
A remote attacker can disable the virus warning mechanism in Microsoft Excel 97.
CVE-1999-0590 3 Apple, Linux, Microsoft 6 Macos, Linux Kernel, Windows 2000 and 3 more 2024-11-20 10.0 HIGH N/A
A system does not present an appropriate legal message or warning to a user who is accessing it.
CVE-1999-0444 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2024-11-20 5.0 MEDIUM N/A
Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display for each packet or filling up log files.
CVE-1999-0387 1 Microsoft 2 Windows 95, Windows 98 2024-11-20 7.8 HIGH N/A
A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwords.
CVE-1999-0357 1 Microsoft 1 Windows 98 2024-11-20 5.0 MEDIUM N/A
Windows 98 and other operating systems allows remote attackers to cause a denial of service via crafted "oshare" packets, possibly involving invalid fragmentation offsets.