Microsoft

Internet Explorer

1637 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 39.47%
  • Published 07.01.2011 23:00:20
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer on Windows XP allows remote attackers to trigger an incorrect GUI display and have unspecified other impact via vectors related to the DOM implementation, as demonstrated by cross_fuzz.

Exploit
  • EPSS 85.6%
  • Published 22.12.2010 21:00:17
  • Last modified 11.04.2025 00:51:21

Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in mshtml.dll, as used in Microsoft Internet Explorer 6 through 8 and other products, allows remote attackers to execute arbitrary code ...

  • EPSS 55.4%
  • Published 16.12.2010 19:33:02
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka ...

  • EPSS 23.57%
  • Published 16.12.2010 19:33:02
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6, 7, and 8 does not prevent rendering of cached content as HTML, which allows remote attackers to access content from a different (1) domain or (2) zone via unspecified script code, aka "Cross-Domain Information Disclosur...

  • EPSS 58.39%
  • Published 16.12.2010 19:33:02
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML ...

  • EPSS 58.39%
  • Published 16.12.2010 19:33:02
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML ...

  • EPSS 58.39%
  • Published 16.12.2010 19:33:02
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, ...

  • EPSS 23.57%
  • Published 16.12.2010 19:33:02
  • Last modified 11.04.2025 00:51:21

Microsoft Internet Explorer 6, 7, and 8 does not prevent rendering of cached content as HTML, which allows remote attackers to access content from a different (1) domain or (2) zone via unspecified script code, aka "Cross-Domain Information Disclosur...

Warning
  • EPSS 86.94%
  • Published 05.11.2010 17:00:02
  • Last modified 07.10.2025 01:00:02

Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code via vectors related to Cascading Style Sheets (CSS) token sequences and the clip attribute, aka an "invalid flag reference" issu...

  • EPSS 38.08%
  • Published 13.10.2010 19:00:46
  • Last modified 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in the toStaticHTML function in Microsoft Internet Explorer 8, and the SafeHTML function in Microsoft Windows SharePoint Services 3.0 SP2 and Office SharePoint Server 2007 SP2, allows remote attackers to injec...