Microsoft

Internet Explorer

1637 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 52.37%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

The Timed Interactive Multimedia Extensions (aka HTML+TIME) implementation in Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) ...

  • EPSS 41.48%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "DOM Modification Memory C...

  • EPSS 3.28%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "D...

  • EPSS 85.85%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 8 and 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Layout Memory Corruption Vuln...

  • EPSS 36.65%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Selection Object Memory C...

  • EPSS 36.65%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 7 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "HTTP Redirect Memory Corr...

  • EPSS 35.62%
  • Published 16.06.2011 20:55:01
  • Last modified 11.04.2025 00:51:21

The Vector Markup Language (VML) implementation in vgx.dll in Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly...

  • EPSS 33.88%
  • Published 03.06.2011 17:55:00
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 8 and earlier, and Internet Explorer 9 beta, does not properly restrict cross-zone drag-and-drop actions, which allows user-assisted remote attackers to read cookie files via vectors involving an IFRAME element with a SRC ...

  • EPSS 34.76%
  • Published 03.06.2011 17:55:00
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 9 and earlier does not properly restrict cross-zone drag-and-drop actions, which allows user-assisted remote attackers to read cookie files via vectors involving an IFRAME element with a SRC attribute containing an http: U...

Exploit
  • EPSS 17.63%
  • Published 15.04.2011 20:55:00
  • Last modified 11.04.2025 00:51:21

Microsoft msxml.dll, as used in Internet Explorer 8 on Windows 7, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function. NOTE: thi...