Skip to main content

Vendor/product archive

microsoft / internet_explorer CVEs

Beta · best-effort

1,731 CVEs tagged to microsoft / internet_explorer735 Critical, 473 High, 463 Medium, 60 Low, 0 Unrated.

CVE-2006-5884

Published Nov 14, 2006

Multiple unspecified vulnerabilities in DirectAnimation ActiveX controls for Microsoft Internet Explorer 5.01 through 6 have unknown impact and remote attack vectors, possibly rel…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5152

Published Oct 5, 2006

Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL that is returned in…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5162

Published Oct 5, 2006

wininet.dll in Microsoft Internet Explorer 6.0 SP2 and earlier allows remote attackers to cause a denial of service (unhandled exception and crash) via a long Content-Type header,…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-4193

Published Aug 17, 2006

Microsoft Internet Explorer 6.0 SP1 and possibly other versions allows remote attackers to cause a denial of service and possibly execute arbitrary code by instantiating COM objec…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3639

Published Aug 9, 2006

Microsoft Internet Explorer 5.01 and 6 does not properly identify the originating domain zone when handling redirects, which allows remote attackers to read cross-domain web pages…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3640

Published Aug 9, 2006

Microsoft Internet Explorer 5.01 and 6 allows certain script to persist across navigations between pages, which allows remote attackers to obtain the window location of visited we…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3643

Published Aug 9, 2006

Cross-site scripting (XSS) vulnerability in Internet Explorer 5.01 and 6 in Microsoft Windows 2000 SP4 permits access to local "HTML-embedded resource files" in the Microsoft Mana…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3450

Published Aug 8, 2006

Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using the document.getElementByID Javascript function to access crafted Cascading Style Sheet (C…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3637

Published Aug 8, 2006

Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle various HTML layout component combinations, which allows user-assisted remote attackers to execute arbitrary co…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3638

Published Aug 8, 2006

Microsoft Internet Explorer 5.01 and 6 does not properly handle uninitialized COM objects, which allows remote attackers to cause a denial of service (memory corruption) and possi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3915

Published Jul 28, 2006

Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by iterating over any native function, as demonstrated with the window…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3898

Published Jul 27, 2006

Microsoft Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to cause a denial of service (application crash) by calling the Click method of the Internet.HHCtrl.1 Act…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3899

Published Jul 27, 2006

Microsoft Internet Explorer 6.0 on Windows XP SP2 allows remote attackers to cause a denial of service (application crash) by calling the stringToBinary function of the CEnroll.CE…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3729

Published Jul 21, 2006

DataSourceControl in Internet Explorer 6 on Windows XP SP2 with Office installed allows remote attackers to cause a denial of service (crash) via a large negative integer argument…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-3657

Published Jul 18, 2006

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (stack overflow exception) via a DXImageTransform.Microsoft.Gradient ActiveX object with a long…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3658

Published Jul 18, 2006

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by accessing the object references of a FolderItem ActiveX object, which triggers a null…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3659

Published Jul 18, 2006

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the location or URL property of a MHTMLFile ActiveX object.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3591

Published Jul 18, 2006

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) by accessing the URL property of a TriEditDocument.TriEditDocument object be…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3605

Published Jul 18, 2006

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the Transition property on an uninitialized DXImageTransform.Microsoft.Reveal…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3545

Published Jul 13, 2006

Microsoft Internet Explorer 7.0 Beta allows remote attackers to cause a denial of service (application crash) via a web page with multiple empty APPLET start tags. NOTE: a third…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3513

Published Jul 11, 2006

danim.dll in Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) by accessing the Data property of a DirectAnimation DAUserData…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3511

Published Jul 11, 2006

Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) by setting the fonts property of the HtmlDlgSafeHelper object, which triggers a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1,426-1,450 of 1,731 CVEsPage 58 of 70