CVE-2005-1989
- EPSS 62.78%
- Published 10.08.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to obtain information and possibly execute code when browsing from a web site to a web folder view using WebDAV, aka "Web Folder Behaviors Cross-Domain Vulnerability...
CVE-2005-1990
- EPSS 82.18%
- Published 10.08.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Internet Explorer 5.0, 5.5, and 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not ActiveX controls, inc...
- EPSS 11.95%
- Published 19.07.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Microsoft MSN Messenger 9.0 and Internet Explorer 6.0 allows remote attackers to cause a denial of service (crash) via an image with an ICC Profile with a large Tag Count.
CVE-2005-2274
- EPSS 22.08%
- Published 13.07.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Microsoft Internet Explorer 6.0 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin S...
- EPSS 65.27%
- Published 05.07.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Internet Explorer 5.01 SP4 up to 6 on various Windows operating systems, including IE 6.0.2900.2180 on Windows XP, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedd...
CVE-2005-1211
- EPSS 43.44%
- Published 14.06.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in the PNG image rendering component of Microsoft Internet Explorer allows remote attackers to execute arbitrary code via a crafted PNG file.
CVE-2005-1790
- EPSS 78.79%
- Published 01.06.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Microsoft Internet Explorer 6 SP2 6.0.2900.2180 and 6.0.2800.1106, and earlier versions, allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a Javascript BODY onload event that calls the window function, aka "M...
- EPSS 8.46%
- Published 28.05.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Microsoft Internet Explorer 6 SP2 allows remote attackers to cause a denial of service (infinite loop and application crash) via two embedded files that call each other.
CVE-2005-0053
- EPSS 74.99%
- Published 02.05.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability."
CVE-2005-0054
- EPSS 38.33%
- Published 02.05.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Internet Explorer 5.01, 5.5, and 6 allows remote attackers to spoof a less restrictive security zone and execute arbitrary code via an HTML page containing URLs that contain hostnames that have been double hex encoded, which are decoded twice to gene...