CVE-2011-1961
- EPSS 29.16%
- Veröffentlicht 10.08.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The telnet URI handler in Microsoft Internet Explorer 6 through 9 does not properly launch the handler application, which allows remote attackers to execute arbitrary programs via a crafted web site, aka "Telnet Handler Remote Code Execution Vulnerab...
CVE-2011-1962
- EPSS 16.58%
- Veröffentlicht 10.08.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 6 through 9 does not properly handle unspecified character sequences, which allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site that triggers "inactive filtering," aka "Sh...
CVE-2011-1963
- EPSS 39.29%
- Veröffentlicht 10.08.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "XSLT Memory Corruption Vu...
CVE-2011-1964
- EPSS 39.29%
- Veröffentlicht 10.08.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Style Object Memory Corru...
CVE-2008-7295
- EPSS 23.36%
- Veröffentlicht 09.08.2011 19:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middle attackers to overwrite or delete arbitrary cookies via a Set-Cookie header in an HTTP response, related to lac...
CVE-2011-1246
- EPSS 13.09%
- Veröffentlicht 16.06.2011 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 8 does not properly handle content settings in HTTP responses, which allows remote web servers to obtain sensitive information from a different (1) domain or (2) zone via a crafted response, aka "MIME Sniffing Information ...
CVE-2011-1250
- EPSS 44.48%
- Veröffentlicht 16.06.2011 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Link Properties Handling ...
CVE-2011-1251
- EPSS 36.65%
- Veröffentlicht 16.06.2011 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "DOM Manipulation Memory Corruption ...
CVE-2011-1252
- EPSS 18.07%
- Veröffentlicht 16.06.2011 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in the SafeHTML function in the toStaticHTML API in Microsoft Internet Explorer 7 and 8, Office SharePoint Server 2007 SP2, Office SharePoint Server 2010 Gold and SP1, Groove Server 2010 Gold and SP1, Windows ...
CVE-2011-1254
- EPSS 36.65%
- Veröffentlicht 16.06.2011 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Drag and Drop Memory Corr...