threat
engine
.sh
Back
·
··:··
Home
/
Product
/
microsoft windows 95
Product
microsoft windows 95
46 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-1999-1593
all versions
Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service (connectivity loss) or steal credentia
CVE-2005-2388
all versions
Buffer overflow in a certain USB driver, as used on Microsoft Windows, allows attackers to execute arbitrary code.
CVE-2002-1692
all versions
Buffer overflow in backup utility of Microsoft Windows 95 allows attackers to execute arbitrary code by causing a filename with a
CVE-2002-1325
all versions
Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a local user's username via a Java
CVE-2002-1260
all versions
The Java Database Connectivity (JDBC) APIs in Microsoft Virtual Machine (VM) 5.0.3805 and earlier allow remote attackers to bypass
CVE-2002-1258
all versions
Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Internet Explorer and other a
CVE-2002-1257
all versions
Microsoft Virtual Machine (VM) up to and including build 5.0.3805 allows remote attackers to execute arbitrary code by including a
CVE-2002-0053
all versions
Buffer overflow in SNMP agent service in Windows 95/98/98SE, Windows NT 4.0, Windows 2000, and Windows XP allows remote attackers
CVE-2001-0238
all versions
Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Z
CVE-2000-1039
all versions
Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with
CVE-2000-0980
all versions
NMPI (Name Management Protocol on IPX) listener in Microsoft NWLink does not properly filter packets from a broadcast address, whi
CVE-2000-0979
all versions
File and Print Sharing service in Windows 95, Windows 98, and Windows Me does not properly check the password for a file share, wh
CVE-2000-1003
all versions
NETBIOS client in Windows 95 and Windows 98 allows a remote attacker to cause a denial of service by changing a file sharing servi
CVE-2000-0742
all versions
The IPX protocol implementation in Microsoft Windows 95 and 98 allows remote attackers to cause a denial of service by sending a p
CVE-2000-1079
all versions
Interactions between the CIFS Browser Protocol and NetBIOS as implemented in Microsoft Windows 95, 98, NT, and 2000 allow remote a
CVE-2000-0612
all versions
Windows 95 and Windows 98 do not properly process spoofed ARP packets, which allows remote attackers to overwrite static entries i
CVE-1999-0590
all versions
A system does not present an appropriate legal message or warning to a user who is accessing it.
CVE-2000-0404
all versions
The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Mast
CVE-2000-0305
all versions
Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of ser
CVE-2000-0347
all versions
Windows 95 and Windows 98 allow a remote attacker to cause a denial of service via a NetBIOS session request packet with a NULL so
CVE-2000-0168
all versions
Microsoft Windows 9x operating systems allow an attacker to cause a denial of service via a pathname that includes file device nam
CVE-2000-0155
all versions
Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate prog
CVE-2000-0129
all versions
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by perf
CVE-1999-1105
all versions
Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an administrato
CVE-1999-1104
all versions
Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users
CVE-1999-0975
all versions
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a
CVE-1999-0387
all versions
A legacy credential caching mechanism used in Windows 95 and Windows 98 systems allows attackers to read plaintext network passwor
CVE-2000-0330
all versions
The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka
CVE-1999-0909
all versions
Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options
CVE-1999-0749
all versions
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
CVE-1999-0875
all versions
DHCP clients with ICMP Router Discovery Protocol (IRDP) enabled allow remote attackers to modify their default routes.
CVE-1999-0918
all versions
Denial of service in various Windows systems via malformed, fragmented IGMP packets.
CVE-1999-0717
all versions
A remote attacker can disable the virus warning mechanism in Microsoft Excel 97.
CVE-1999-0444
all versions
Remote attackers can perform a denial of service in Windows machines using malicious ARP packets, forcing a message box display fo
CVE-1999-1254
all versions
Windows 95, 98, and NT 4.0 allow remote attackers to cause a denial of service by spoofing ICMP redirect messages from a router, w
CVE-1999-1201
all versions
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attacke
CVE-1999-1291
all versions
TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections b
CVE-1999-0258
all versions
Bonk variation of teardrop IP fragmentation denial of service.
CVE-1999-0256
all versions
Buffer overflow in War FTP allows remote execution of commands.
CVE-1999-0104
all versions
A later variation on the Teardrop IP denial of service attack, a.k.a. Teardrop-2.
CVE-1999-0015
all versions
Teardrop IP denial of service.
CVE-1999-0016
all versions
Land IP denial of service.
CVE-1999-0153
all versions
Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.
CVE-1999-0519
all versions
A NETBIOS/SMB share password is the default, null, or missing.
CVE-1999-0518
all versions
A NETBIOS/SMB share password is guessable.
CVE-1999-0179
all versions
Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin