CVE-2010-0249
- EPSS 91.39%
- Published 15.01.2010 17:30:00
- Last modified 09.04.2025 00:30:58
Use-after-free vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 on Windows 2000 SP4; Windows XP SP2 and SP3; Windows Server 2003 SP2; Windows Vista Gold, SP1, and SP2; Windows Server 2008 Gold, SP2, and R2; and Windows 7 allows remote ...
CVE-2009-3671
- EPSS 56.49%
- Published 09.12.2009 18:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Unini...
CVE-2009-3673
- EPSS 55.4%
- Published 09.12.2009 18:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 7 and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka ...
CVE-2009-3674
- EPSS 59.22%
- Published 09.12.2009 18:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Unini...
CVE-2009-3672
- EPSS 79.01%
- Published 02.12.2009 11:30:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory that (1) were not properly initialized or (2) are deleted, which allows remote attackers to execute arbitrary code via vectors involving a call to the getElementsByTagName...
CVE-2009-4074
- EPSS 19.68%
- Published 25.11.2009 18:30:00
- Last modified 09.04.2025 00:30:58
The XSS Filter in Microsoft Internet Explorer 8 allows remote attackers to leverage the "response-changing mechanism" to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, related to the details of...
- EPSS 26.66%
- Published 24.11.2009 17:30:00
- Last modified 09.04.2025 00:30:58
The printing functionality in Microsoft Internet Explorer 8 allows remote attackers to discover a local pathname, and possibly a local username, by reading the dc:title element of a PDF document that was generated from a local web page.
- EPSS 11.58%
- Published 16.11.2009 19:30:01
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 6 through 6.0.2900.2180 and 7 through 7.0.6000.16711 allows remote attackers to cause a denial of service (application hang) via a JavaScript loop that configures the home page by using the setHomePage method and a DHTML b...
CVE-2009-2500
- EPSS 56.77%
- Published 14.10.2009 10:30:01
- Last modified 09.04.2025 00:30:58
Integer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 Gold and SP...
CVE-2009-2501
- EPSS 51.68%
- Published 14.10.2009 10:30:01
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in GDI+ in Microsoft Internet Explorer 6 SP1, Windows XP SP2 and SP3, Office XP SP3, Office 2003 SP3, 2007 Microsoft Office System SP1 and SP2, Office Project 2002 SP1, Visio 2002 SP2, Office Word Viewer, Word Viewer 2003 G...