MS05-004: ASP.NET Path Validation Vulnerability (887219) 08 Feb 2005 00:00 GMTThis update resolves a public vulnerability in ASP.NET that could allow an attacker to bypass the security of an ASP.NET Web site and gain unauthorized access. The vulnerability is documented in the Vulnerability Details section of this bulletin. An attacker who successfully exploited this vulnerability could gain unauthorized access to parts of a Web site. The actions that the attacker could take would depend on the specific content being protected.
Source: TechNet MS04-035: Vulnerability in SMTP Could Allow Remote Code Execution (885881) 08 Feb 2005 00:00 GMTThis update resolves a newly-discovered, privately reported vulnerability. A remote code execution vulnerability exists in the Simple Mail Transfer Protocol (SMTP) component that is provided as part of the affected software. The vulnerability is documented in the Vulnerability Details section of this bulletin. An attacker who successfully exploited this vulnerability could take complete control of an affected system, including installing programs; viewing, changing, or deleting data; or creating new accounts that have full privileges.
Source: TechNet