CVE-2007-4041
- EPSS 10.7%
- Veröffentlicht 27.07.2007 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple argument injection vulnerabilities in Mozilla Firefox 2.0.0.5 and 3.0alpha allow remote attackers to execute arbitrary commands via a NULL byte (%00) and shell metacharacters in a (1) mailto, (2) nntp, (3) news, (4) snews, or (5) telnet URI,...
CVE-2007-4042
- EPSS 4.36%
- Veröffentlicht 27.07.2007 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%00) and shell metacharacters in a (1) mailto, (2) nntp, (3) news, (4) snews, or (5) telnet URI, a similar issue...
CVE-2007-3958
- EPSS 49.85%
- Veröffentlicht 24.07.2007 18:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service via a certain GIF file, as demonstrated by Art.gif.
CVE-2007-3954
- EPSS 1.22%
- Veröffentlicht 24.07.2007 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with SeaMonkey installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell...
CVE-2007-3924
- EPSS 7.82%
- Veröffentlicht 21.07.2007 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Netscape installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell ...
CVE-2007-3930
- EPSS 17.17%
- Veröffentlicht 21.07.2007 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Interpretation conflict between Microsoft Internet Explorer and DocuWiki before 2007-06-26b allows remote attackers to inject arbitrary JavaScript and conduct cross-site scripting (XSS) attacks when spellchecking UTF-8 encoded messages via the spell_...
CVE-2007-3826
- EPSS 67.07%
- Veröffentlicht 17.07.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 7 on Windows XP SP2 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conduct phishing and other attacks via repeated document.open function calls after a user requests a new page, bu...
CVE-2007-3670
- EPSS 49.73%
- Veröffentlicht 10.07.2007 19:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Firefox installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell m...
CVE-2007-3576
- EPSS 21.95%
- Veröffentlicht 05.07.2007 20:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 6 executes web script from URIs of arbitrary scheme names ending with the "script" character sequence, using the (1) vbscript: handler for scheme names with 7 through 9 characters, and the (2) javascript: handler for schem...
CVE-2007-3550
- EPSS 36.13%
- Veröffentlicht 03.07.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 6.0 and 7.0 allows remote attackers to fill Zones with arbitrary domains using certain metacharacters such as wildcards via JavaScript, which results in a denial of service (website suppression and resource consumption), a...