Skip to main content

Vendor/product archive

microsoft / internet_explorer CVEs

Beta · best-effort

1,731 CVEs tagged to microsoft / internet_explorer735 Critical, 473 High, 463 Medium, 60 Low, 0 Unrated.

CVE-2007-2291

Published Apr 26, 2007

CRLF injection vulnerability in the Digest Authentication support for Microsoft Internet Explorer 7.0.5730.11 allows remote attackers to conduct HTTP response splitting attacks vi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-2161

Published Apr 22, 2007

Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (browser hang) via JavaScript that matches a regular expression against a long string, as demons…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-1765

Published Mar 30, 2007

Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a malf…

CVSS 9.3 · Critical

CVE-2006-7066

Published Mar 2, 2007

Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by creating an object inside an iframe, deleting the frame by setting…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2007-1094

Published Feb 26, 2007

Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (NULL dereference and application crash) via JavaScript onUnload handlers that modify the struct…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2007-1091

Published Feb 26, 2007

Microsoft Internet Explorer 7 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conduct phishing and other attacks via onUnload Javascript h…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-7029

Published Feb 23, 2007

Microsoft Internet Explorer 6 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a frameset with only one frame that calls resizeTo with certain argu…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-7031

Published Feb 23, 2007

Microsoft Internet Explorer 6.0.2900 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a table element with a CSS attribute that sets the position,…

CVSS 6.5 · Medium

CVE-2007-0612

Published Jan 31, 2007

Multiple ActiveX controls in Microsoft Windows 2000, XP, 2003, and Vista allows remote attackers to cause a denial of service (Internet Explorer crash) by accessing the bgColor, f…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-6956

Published Jan 29, 2007

Microsoft Internet Explorer allows remote attackers to cause a denial of service (crash) via a web page that contains a large number of nested marquee tags, a related issue to CVE…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5581

Published Dec 12, 2006

Unspecified vulnerability in Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code via certain DHTML script functions, such as normalize, and "incorrectl…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-6310

Published Dec 6, 2006

Microsoft Internet Explorer 6.0 SP1 and earlier allows remote attackers to cause a denial of service (crash) via an invalid src attribute value ("?") in an HTML frame tag that is…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6311

Published Dec 6, 2006

Microsoft Internet Explorer 6.0.2900.2180 allows remote attackers to cause a denial of service via a style attribute in an HTML table tag with a width value that is dynamically ca…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4687

Published Nov 14, 2006

Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via crafted layout combinations involving DIV tags and HTML CSS float properties that…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1,401-1,425 of 1,731 CVEsPage 57 of 70