Skip to main content

Vendor/product archive

microsoft / internet_explorer CVEs

Beta · best-effort

1,731 CVEs tagged to microsoft / internet_explorer735 Critical, 473 High, 463 Medium, 60 Low, 0 Unrated.

CVE-2006-3512

Published Jul 11, 2006

Internet Explorer 6 on Windows XP allows remote attackers to cause a denial of service (crash) by setting the Enabled property of a DXTFilter ActiveX object to true, which trigger…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3472

Published Jul 10, 2006

Microsoft Internet Explorer 6.0 and 6.0 SP1 allows remote attackers to cause a denial of service via an HTML page with an A tag containing a long title attribute. NOTE: the prove…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3427

Published Jul 7, 2006

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by declaring the sourceURL attribute on an uninitialized DirectAnimation.StructuredGraph…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3357

Published Jul 6, 2006

Heap-based buffer overflow in HTML Help ActiveX control (hhctrl.ocx) in Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (application crash) an…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3280

Published Jun 28, 2006

Cross-domain vulnerability in Microsoft Internet Explorer 6.0 allows remote attackers to access restricted information from other domains via an object tag with a data parameter t…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3281

Published Jun 28, 2006

Microsoft Internet Explorer 6.0 does not properly handle Drag and Drop events, which allows remote user-assisted attackers to execute arbitrary code via a link to an SMB file shar…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3227

Published Jun 26, 2006

Interpretation conflict between Internet Explorer and other web browsers such as Mozilla, Opera, and Firefox might allow remote attackers to modify the visual presentation of web…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-3200

Published Jun 23, 2006

Unspecified versions of Internet Explorer allow remote attackers to cause a denial of service (crash) via an IFRAME with a src tag containing a "File://" URI followed by an 8-bit…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1303

Published Jun 13, 2006

Multiple unspecified vulnerabilities in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allow remote attackers to execute arbitrary code by instantiating certain COM ob…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2382

Published Jun 13, 2006

Heap-based buffer overflow in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to execute arbitrary code via crafted UTF-8 encoded HTML that resu…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2383

Published Jun 13, 2006

Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to execute arbitrary code via "unexpected data" related to "paramet…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2384

Published Jun 13, 2006

Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to conduct spoofing and phishing attacks by using a modal browser window in a way that preserves…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-2385

Published Jun 13, 2006

Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted web page that…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2006-2766

Published Jun 2, 2006

Buffer overflow in INETCOMM.DLL, as used in Microsoft Internet Explorer 6.0 through 6.0 SP2, Windows Explorer, Outlook Express 6, and possibly other programs, allows remote user-a…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-2218

Published May 5, 2006

Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory c…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-2094

Published Apr 29, 2006

Microsoft Internet Explorer before Windows XP Service Pack 2 and Windows Server 2003 Service Pack 1, when Prompt is configured in Security Settings, uses modal dialogs to verify t…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1992

Published Apr 25, 2006

mshtml.dll 6.00.2900.2873, as used in Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via nested OBJECT tags, which trigger invalid point…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2006-1186

Published Apr 11, 2006

Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via by instantiating the (1) Mdt2gddr.dll, (2) Mdt2dd.dll, and (3) Mdt2gddo.dll COM ob…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-1189

Published Apr 11, 2006

Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via a crafted URL with an International Domain Name (…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2006-1190

Published Apr 11, 2006

Microsoft Internet Explorer 5.01 through 6 does not always return the correct IOleClientSite information when dynamically creating an embedded object, which could cause Internet E…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort
Showing 1,451-1,475 of 1,731 CVEsPage 59 of 70