CVE-2007-3027
- EPSS 56.47%
- Veröffentlicht 12.06.2007 19:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code by causing Internet Explorer to install multiple language packs in a way that triggers memory corruption, aka "Language Pack Installation V...
CVE-2007-3164
- EPSS 20.81%
- Veröffentlicht 11.06.2007 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 7, when prompting for HTTP Basic Authentication for an IDN web site, uses ACE labels for the domain name in the status bar, but uses internationalized labels for this name in the authentication dialog, which might allow re...
- EPSS 48.43%
- Veröffentlicht 07.06.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the Provideo Camimage ActiveX control in ISSCamControl.dll 1.0.1.5, when Internet Explorer 6 is used on Windows 2000 SP4, allows remote attackers to execute arbitrary code via a long URL property value.
CVE-2007-3091
- EPSS 21.16%
- Veröffentlicht 06.06.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in Microsoft Internet Explorer 6 SP1; 6 and 7 for Windows XP SP2 and SP3; 6 and 7 for Server 2003 SP2; 7 for Vista Gold, SP1, and SP2; and 7 for Server 2008 SP2 allows remote attackers to execute arbitrary code or perform other actions...
CVE-2007-3092
- EPSS 5.36%
- Veröffentlicht 06.06.2007 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 6 allows remote attackers to spoof the URL bar, and page properties including SSL certificates, by interrupting page loading through certain use of location DOM objects and setTimeout calls. NOTE: this issue can be levera...
CVE-2007-3075
- EPSS 18.28%
- Veröffentlicht 06.06.2007 10:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Directory traversal vulnerability in Microsoft Internet Explorer allows remote attackers to read arbitrary files via directory traversal sequences in a URI with a certain scheme, possibly related to "..%5C" (encoded backslash) sequences.
- EPSS 57.35%
- Veröffentlicht 31.05.2007 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Buffer overflow in the BaseRunner ActiveX control in the Ademco ATNBaseLoader100 Module (ATNBaseLoader100.dll) 5.4.0.6, when Internet Explorer 6 is used, allows remote attackers to execute arbitrary code via a long argument to the (1) Send485CMD meth...
CVE-2007-2718
- EPSS 28.5%
- Veröffentlicht 16.05.2007 19:28:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in the WebMail system in Stalker CommuniGate Pro 5.1.8 and earlier, when using Microsoft Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via crafted STYLE tags.
CVE-2007-0942
- EPSS 59.11%
- Veröffentlicht 08.05.2007 23:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Microsoft Internet Explorer 5.01 SP4 on Windows 2000 SP4; 6 SP1 on Windows 2000 SP4; 6 and 7 on Windows XP SP2, or Windows Server 2003 SP1 or SP2; and possibly 7 on Windows Vista does not properly "instantiate certain COM objects as ActiveX controls,...
CVE-2007-0944
- EPSS 67.08%
- Veröffentlicht 08.05.2007 23:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the CTableCol::OnPropertyChange method in Microsoft Internet Explorer 5.01 SP4 on Windows 2000 SP4; 6 SP1 on Windows 2000 SP4; and 6 on Windows XP SP2, or Windows Server 2003 SP1 or SP2 allows remote attackers to execute ...