Microsoft

Ie

201 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.19%
  • Published 05.06.2000 04:00:00
  • Last modified 03.04.2025 01:03:51

Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different "SSL Certificate Validation" vulnerabili...

  • EPSS 10.33%
  • Published 21.02.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.

  • EPSS 1.48%
  • Published 18.02.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicious Java applet that escapes the Java sandbox, aka the "VM File Reading" vulnerability.

  • EPSS 24.15%
  • Published 04.01.2000 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in Internet Explorer 4.0 via EMBED tag.

  • EPSS 21.84%
  • Published 23.12.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function.

  • EPSS 19.71%
  • Published 22.12.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attachment" vulnerability.

  • EPSS 6.21%
  • Published 06.12.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol.

  • EPSS 0.78%
  • Published 29.11.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled.

  • EPSS 8.05%
  • Published 11.11.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.

  • EPSS 0.88%
  • Published 01.11.1999 05:00:00
  • Last modified 03.04.2025 01:03:51

By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option, which allows frame spoofing.