This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
| Summuary | |
|---|---|
| CPE Name | cpe:/a:microsoft:visual_studio_.net |
| Detail | |||
|---|---|---|---|
| Vendor | Microsoft | First view | 2004-08-06 |
| Product | Visual Studio .Net | Last view | 2010-08-31 |
| Version | Type | Application | |
| Edition | |||
| Language | |||
| Update | |||
Activity : Yearly
COMMON PLATFORM ENUMERATION : Repartition per Version
Related : CVE
This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 9.3 | 2010-08-31 | CVE-2010-3190 | Network | Medium | None Requ... | |
| 9.3 | 2009-10-14 | CVE-2009-3126 | Network | Medium | None Requ... | |
| 9.3 | 2009-10-14 | CVE-2009-2528 | Network | Medium | None Requ... | |
| 9.3 | 2009-10-14 | CVE-2009-2504 | Network | Medium | None Requ... | |
| 9.3 | 2009-10-14 | CVE-2009-2503 | Network | Medium | None Requ... | |
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 9.3 | 2009-10-14 | CVE-2009-2502 | Network | Medium | None Requ... | |
| 9.3 | 2009-10-14 | CVE-2009-2501 | Network | Medium | None Requ... | |
| 9.3 | 2009-10-14 | CVE-2009-2500 | Network | Medium | None Requ... | |
| 9.3 | 2009-08-12 | CVE-2009-2496 | Network | Medium | None Requ... | |
| 7.8 | 2009-07-29 | CVE-2009-2495 | Network | Low | None Requ... | |
| 9.3 | 2009-07-29 | CVE-2009-2493 | Network | Medium | None Requ... | |
| 9.3 | 2009-07-29 | CVE-2009-0901 | Network | Medium | None Requ... | |
| 8.5 | 2008-12-10 | CVE-2008-4256 | Network | Medium | Requires ... | |
| 9.3 | 2008-12-10 | CVE-2008-4255 | Network | Medium | None Requ... | |
| 8.5 | 2008-12-10 | CVE-2008-4254 | Network | Medium | Requires ... | |
| 8.5 | 2008-12-10 | CVE-2008-4253 | Network | Medium | Requires ... | |
| 8.5 | 2008-12-10 | CVE-2008-4252 | Network | Medium | Requires ... | |
| 9.3 | 2008-08-18 | CVE-2008-3704 | Network | Medium | None Requ... | |
| 9.3 | 2008-03-11 | CVE-2007-1201 | Network | Medium | None Requ... | |
| 10 | 2007-03-20 | CVE-2007-1512 | Network | Low | None Requ... | |
| 9.3 | 2007-02-13 | CVE-2007-0025 | Network | Medium | None Requ... | |
| 7.6 | 2006-11-27 | CVE-2006-6133 | Network | High | None Requ... | |
| 6.8 | 2006-11-01 | CVE-2006-4704 | Network | Medium | None Requ... | |
| 5.1 | 2006-01-12 | CVE-2006-0187 | Network | High | None Requ... |
CWE : Common Weakness Enumeration
| % | id | Name |
|---|---|---|
| 30% (6) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
| 25% (5) | CWE-94 | Failure to Control Generation of Code ('Code Injection') |
| 20% (4) | CWE-189 | Numeric Errors |
| 10% (2) | CWE-399 | Resource Management Errors |
| 10% (2) | CWE-264 | Permissions, Privileges, and Access Controls |
| % | id | Name |
|---|---|---|
| 5% (1) | CWE-200 | Information Exposure |
Oval Markup Language : Definitions
This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| OvalID | Name |
|---|---|
| oval:org.mitre.oval:def:4307 | GDI+ JPEG Parsing Engine Buffer Overflow (VS.NET 2002) |
| oval:org.mitre.oval:def:4216 | GDI+ JPEG Parsing Engine Buffer Overflow (IE6) |
| oval:org.mitre.oval:def:4003 | GDI+ JPEG Parsing Engine Buffer Overflow (Windows XP) |
| oval:org.mitre.oval:def:3881 | GDI+ JPEG Parsing Engine Buffer Overflow (Office XP,SP2) |
| oval:org.mitre.oval:def:3810 | GDI+ JPEG Parsing Engine Buffer Overflow (Project 2003) |
| id | Name |
|---|---|
| oval:org.mitre.oval:def:3320 | GDI+ JPEG Parsing Engine Buffer Overflow Microsoft Office Visio Pro 2003 |
| oval:org.mitre.oval:def:3082 | GDI+ JPEG Parsing Engine Buffer Overflow (Visio Pro 2002) |
| oval:org.mitre.oval:def:3038 | GDI+ JPEG Parsing Engine Buffer Overflow (Project 2002,SP1) |
| oval:org.mitre.oval:def:2706 | GDI+ JPEG Parsing Engine Buffer Overflow (Office 2003) |
| oval:org.mitre.oval:def:1721 | GDI+ JPEG Parsing Engine Buffer Overflow (VS.NET 2003) |
| oval:org.mitre.oval:def:1105 | GDI+ JPEG Parsing Engine Buffer Overflow (Server 2003) |
| oval:org.mitre.oval:def:1157 | Crystal Reports Business Objects Directory Traversal |
| oval:org.mitre.oval:def:1538 | Win2K/XP,SP1 DDS Library Shape Control Buffer Overflow |
| oval:org.mitre.oval:def:1535 | Win2k,SP4 DDS Library Shape Control Buffer Overflow |
| oval:org.mitre.oval:def:1468 | WinXP,SP2 DDS Library Shape Control Buffer Overflow |
| oval:org.mitre.oval:def:1464 | Server 2003,SP1 DDS Library Shape Control Buffer Overflow |
| oval:org.mitre.oval:def:1454 | Server 2003 DDS Library Shape Control Buffer Overflow |
| oval:org.mitre.oval:def:1155 | WinXP,SP1 (64-bit) DDS Library Shape Control Buffer Overflow |
| oval:org.mitre.oval:def:288 | WMI Object Broker Vulnerability |
| oval:org.mitre.oval:def:2055 | Vulnerability in Crystal Reports for Microsoft Visual Studio Could Allow Remo... |
| oval:org.mitre.oval:def:157 | MFC Memory Corruption Vulnerability |
| oval:org.mitre.oval:def:5327 | Office Web Components DataSource Vulnerability |
| oval:org.mitre.oval:def:5794 | Masked Edit Control Memory Corruption Vulnerability |
| oval:org.mitre.oval:def:5894 | DataGrid Control Memory Corruption Vulnerability |
| oval:org.mitre.oval:def:5994 | FlexGrid Control Memory Corruption Vulnerability |
Open Source Vulnerability Database (OSVDB)
This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| id | Description |
|---|---|
| 67674 | Microsft Visual Studio Path Subversion Arbitrary DLL Injection Code Execution |
| 58869 | Microsoft Office Malformed Object Handling Memory Corruption Arbitrary Code E... |
| 58868 | Microsoft Multiple Products GDI+ PNG Image Handling Integer Overflow |
| 58867 | Microsoft Multiple Products GDI+ .NET API Code Execution Privilege Escalation |
| 58866 | Microsoft Multiple Products GDI+ TIFF Image Handling Memory Corruption Arbitr... |
| id | Description |
|---|---|
| 58865 | Microsoft Multiple Products GDI+ TIFF Image Handling Overflow |
| 58864 | Microsoft Multiple Products GDI+ PNG Image Handling Heap Overflow |
| 58863 | Microsoft Multiple Products GDI+ WMF Image Handling Overflow |
| 58785 | Microsoft Windows MFC Component (MFC42u.dll) AfxOleSetEditMenu Function RTF M... |
| 56915 | Microsoft Office Web Components OWC10.Spreadsheet ActiveX BorderAround() Meth... |
| 56699 | Microsoft Visual Studio Active Template Library (ATL) String Manipulation Arb... |
| 56698 | Microsoft Visual Studio Active Template Library (ATL) Data Stream Object Inst... |
| 56696 | Microsoft Visual Studio Active Template Library (ATL) Headers VariantClear Co... |
| 50581 | Microsoft Visual Basic Charts Control ActiveX (Mschrt20.ocx) Unspecified Memo... |
| 50580 | Microsoft Visual Basic Animation ActiveX (mscomct2.ocx) AVI Parsing Memory Co... |
| 50579 | Microsoft Visual Basic Hierarchical FlexGrid ActiveX (mshflxgd.ocx) Multiple ... |
| 50578 | Microsoft Visual Basic FlexGrid ActiveX (msflxgrd.ocx) Unspecified Memory Cor... |
| 50577 | Microsoft Visual Basic DataGrid ActiveX (msdatgrd.ocx) Unspecified Memory Cor... |
| 47475 | Microsoft Visual Studio Masked Edit Control ActiveX (Msmask32.ocx) Mask Param... |
| 42712 | Microsoft Office Web Components DataSource Page Handling Arbitrary Code Execu... |
| 31887 | Microsoft MFC Component RTF OLE Object Memory Corruption Remote Code Execution |
| 31704 | Business Objects Crystal Reports Unspecified RPT Processing Overflow |
| 30155 | Microsoft Visual Studio WMI Object Broker ActiveX (WmiScriptUtils.dll) Unspec... |
| 22332 | Microsoft Visual Studio UserControl Load Event Code Execution |
| 19093 | Microsoft Design Tools msdds.dll COM Object Arbitrary Code Execution |
Milw0rm Exploits
| id | Description |
|---|---|
| 2008-08-26 | Microsoft Visual Studio (Msmask32.ocx) ActiveX Remote BOF Exploit |
| 2008-08-14 | Microsoft Visual Studio (Msmask32.ocx) ActiveX Remote BOF PoC |
ExploitDB Exploits
| id | Description |
|---|---|
| 7431 | MS Visual Basic ActiveX Controls mscomct2.ocx Buffer Overflow PoC |
Metasploit Exploits
| id | Description |
|---|---|
| 2008-08-13 | Microsoft Visual Studio Mdmask32.ocx ActiveX Buffer Overflow |
| 2006-04-11 | Internet Explorer COM CreateObject Code Execution |











