Microsoft

Ie

201 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 16.94%
  • Published 18.02.2006 02:02:00
  • Last modified 03.04.2025 01:03:51

Memory leak in Microsoft Internet Explorer 6 for Windows XP Service Pack 2 allows remote attackers to cause a denial of service (memory consumption) via JavaScript that uses setInterval to repeatedly call a function to set the value of window.status.

Exploit
  • EPSS 42.4%
  • Published 04.02.2006 02:02:00
  • Last modified 03.04.2025 01:03:51

urlmon.dll in Microsoft Internet Explorer 7.0 beta 2 (aka 7.0.5296.0) allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a BGSOUND element with its SRC attribute set to "file://" followed ...

  • EPSS 45.82%
  • Published 27.01.2006 22:03:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to bypass the Kill bit settings for dangerous ActiveX controls via unknown vectors involving crafted HTML, which can expose the browser to attacks that would otherwise be prevented ...

  • EPSS 10.23%
  • Published 31.12.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Race condition in Microsoft Internet Explorer allows user-assisted attackers to overwrite arbitrary files and possibly execute code by tricking a user into performing a drag-and-drop action from certain objects, such as file objects within a folder v...

  • EPSS 10.52%
  • Published 31.12.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Internet Explorer 6 for Windows XP Service Pack 2 allows remote attackers to spoof the URL in the status bar via the title in an image in a link to a trusted site within a form to the malicious site.

Exploit
  • EPSS 19.89%
  • Published 31.12.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 6.0 on Windows NT 4.0 SP6a, Windows 2000 SP4, Windows XP SP1, Windows XP SP2, and Windows Server 2003 SP1 allows remote attackers to cause a denial of service (client crash) via a certain combination of a malformed HTML fi...

Exploit
  • EPSS 19.03%
  • Published 31.12.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

Internet Explorer 6.0, and possibly other versions, allows remote attackers to bypass the same origin security policy and make requests outside of the intended domain by calling open on an XMLHttpRequest object (Microsoft.XMLHTTP) and using tab, newl...

  • EPSS 15.93%
  • Published 15.12.2005 20:11:00
  • Last modified 03.04.2025 01:03:51

mshtml.dll in Microsoft Windows XP, Server 2003, and Internet Explorer 6.0 SP1 allows attackers to cause a denial of service (access violation) by causing mshtml.dll to process button-focus events at the same time that a document is reloading, as see...

  • EPSS 20.05%
  • Published 14.12.2005 11:03:00
  • Last modified 03.04.2025 01:03:51

Multiple design errors in Microsoft Internet Explorer 5.01, 5.5, and 6 allow user-assisted attackers to execute arbitrary code by (1) overlaying a malicious new window above a file download box, then (2) using a keyboard shortcut and delaying the dis...

  • EPSS 50.73%
  • Published 14.12.2005 11:03:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 5.01, 5.5, and 6, when using an HTTPS proxy server that requires Basic Authentication, sends URLs in cleartext, which allows remote attackers to obtain sensitive information, aka "HTTPS Proxy Vulnerability."