CVE-2006-5577
- EPSS 52.2%
- Published 12.12.2006 20:28:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 6 and earlier allows remote attackers to obtain sensitive information via unspecified uses of the OBJECT HTML tag, which discloses the absolute path of the corresponding TIF folder, aka "TIF Folder Information Disclosure V...
CVE-2006-5578
- EPSS 47.87%
- Published 12.12.2006 20:28:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 6 and earlier allows remote attackers to read Temporary Internet Files (TIF) and obtain sensitive information via unspecified vectors involving certain drag and drop operations, aka "TIF Folder Information Disclosure Vulne...
CVE-2006-5913
- EPSS 2.73%
- Published 15.11.2006 15:07:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 7 allows remote attackers to (1) cause a security certificate from a secure web site to appear invalid via a link to res://ieframe.dll/sslnavcancel.htm with the target site in the anchor identifier, which displays the site...
CVE-2006-4687
- EPSS 62.17%
- Published 14.11.2006 21:07:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via crafted layout combinations involving DIV tags and HTML CSS float properties that trigger memory corruption, aka "HTML Rendering Memory Corruption Vulner...
CVE-2006-5884
- EPSS 14.63%
- Published 14.11.2006 21:07:00
- Last modified 09.04.2025 00:30:58
Multiple unspecified vulnerabilities in DirectAnimation ActiveX controls for Microsoft Internet Explorer 5.01 through 6 have unknown impact and remote attack vectors, possibly related to (1) Danim.dll and (2) Lmrt.dll, a different set of vulnerabilit...
- EPSS 2.19%
- Published 08.11.2006 22:07:00
- Last modified 09.04.2025 00:30:58
Microsoft Internet Explorer 7 allows remote attackers to cause a security certificate from a secure web site to appear invalid via a link to res://ieframe.dll/invalidcert.htm with the target site as an argument, which displays the site's URL in the a...
CVE-2006-5544
- EPSS 54.35%
- Published 26.10.2006 17:07:00
- Last modified 09.04.2025 00:30:58
Visual truncation vulnerability in Microsoft Internet Explorer 7 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a malicious URL containing non-breaking spaces (%A0), which causes the address bar to omit som...
- EPSS 21.63%
- Published 19.09.2006 21:07:00
- Last modified 03.04.2025 01:03:51
Microsoft Internet Explorer 6 and earlier allows remote attackers to cause a denial of service (application hang) via a CSS-formatted HTML INPUT element within a DIV element that has a larger size than the INPUT.
CVE-2006-4777
- EPSS 87.57%
- Published 14.09.2006 00:07:00
- Last modified 03.04.2025 01:03:51
Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) for Internet Explorer 6.0 SP1, on Chinese and possibly other Windows distributions, allows remote attackers to execute arbitrary cod...
CVE-2006-3873
- EPSS 52.48%
- Published 12.09.2006 23:07:00
- Last modified 03.04.2025 01:03:51
Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060912, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a l...