Skip to main content

Vendor/product archive

microsoft / internet_explorer CVEs

Beta · best-effort

1,731 CVEs tagged to microsoft / internet_explorer735 Critical, 473 High, 463 Medium, 60 Low, 0 Unrated.

CVE-2017-0201

Published Apr 12, 2017

A remote code execution vulnerability exists in Internet Explorer in the way that the JScript and VBScript engines render when handling objects in memory. The vulnerability could…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-0149

Published Mar 17, 2017

Microsoft Internet Explorer 9 through 11 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Ex…

CVSS 8.8 · High
evidence mentions
2
Buzz score
42.5
KEV listed

CVE-2017-0130

Published Mar 17, 2017

The scripting engine in Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted w…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-0059

Published Mar 17, 2017

Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disc…

CVSS 4.3 · Medium
Buzz score
25.0
KEV listed

CVE-2017-0049

Published Mar 17, 2017

The VBScript engine in Microsoft Internet Explorer 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Scripting Engine Inf…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-0040

Published Mar 17, 2017

The scripting engine in Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted w…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-0033

Published Mar 17, 2017

Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to spoof web content via a crafted web site, aka "Microsoft Browser Spoofing Vulnerability." This vulnerab…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-0018

Published Mar 17, 2017

Microsoft Internet Explorer 10 and 11 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explo…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-0012

Published Mar 17, 2017

Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to spoof web content via a crafted web site, aka "Microsoft Browser Spoofing Vulnerability." This vulnerab…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-0009

Published Mar 17, 2017

Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Microsoft Browser Memory Corruptio…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-0008

Published Mar 17, 2017

Microsoft Internet Explorer 9 through 11 allow remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disc…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2017-0037

Published Feb 26, 2017

Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreakOnColumnSpanningElement function in msh…

CVSS 8.1 · High
evidence mentions
10
Buzz score
58.5
KEV listed

CVE-2016-7284

Published Dec 20, 2016

Microsoft Internet Explorer 10 and 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclo…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7283

Published Dec 20, 2016

Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet E…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7282

Published Dec 20, 2016

Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allows remote attackers to inject arbitrary web script or HTML via unspecif…

CVSS 6.1 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7281

Published Dec 20, 2016

The Web Workers implementation in Microsoft Internet Explorer 10 and 11 and Microsoft Edge allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "M…

CVSS 5.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2016-7278

Published Dec 20, 2016

Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Windows Hyperlink Object Library…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7199

Published Nov 10, 2016

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to bypass the Same Origin Policy and obtain sensitive window-state information via a crafted web…

CVSS 3.1 · Low
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort
Showing 251-275 of 1,731 CVEsPage 11 of 70