Microsoft

Internet Explorer

1637 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 63.35%
  • Veröffentlicht 08.06.2010 22:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer 6 SP1 and SP2, 7, and 8 allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, related to the CStyleSheet object and ...

  • EPSS 36.87%
  • Veröffentlicht 08.06.2010 20:30:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in the toStaticHTML API, as used in Microsoft Office InfoPath 2003 SP3, 2007 SP1, and 2007 SP2; Office SharePoint Server 2007 SP1 and SP2; SharePoint Services 3.0 SP1 and SP2; and Internet Explorer 8 allows re...

Exploit
  • EPSS 16.28%
  • Veröffentlicht 01.06.2010 20:30:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer 6.0.2900.2180 and 8.0.7600.16385 allows remote attackers to cause a denial of service (resource consumption) via JavaScript code containing an infinite loop that creates IFRAME elements for invalid news:// URIs.

Exploit
  • EPSS 16.28%
  • Veröffentlicht 01.06.2010 20:30:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer 6.0.2900.2180 allows remote attackers to cause a denial of service (resource consumption) via JavaScript code containing an infinite loop that creates IFRAME elements for invalid nntp:// URIs.

Exploit
  • EPSS 13.65%
  • Veröffentlicht 20.05.2010 17:30:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer 6.0.2900.2180, 7, and 8.0.7600.16385 executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive applicati...

  • EPSS 10.25%
  • Veröffentlicht 07.05.2010 18:24:16
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer, when the Invisible Hand extension is enabled, uses cookies during background HTTP requests in a possibly unexpected manner, which might allow remote web servers to identify specific persons and their product searches via ...

Exploit
  • EPSS 22.06%
  • Veröffentlicht 20.04.2010 16:30:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The XSS Filter in Microsoft Internet Explorer 8 does not properly perform neutering for the SCRIPT tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, a differe...

  • EPSS 66.17%
  • Veröffentlicht 31.03.2010 19:30:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer 6, 6 SP1, and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corrupti...

  • EPSS 15.55%
  • Veröffentlicht 31.03.2010 19:30:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 does not properly handle unspecified "encoding strings," which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site, aka "Post Encoding ...

  • EPSS 35.42%
  • Veröffentlicht 31.03.2010 19:30:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 allows remote attackers to execute arbitrary code via a crafted HTML document that triggers memory corruption, aka "Race Condition Memory Corruption Vulnerability."