Microsoft

Ie

201 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 21.47%
  • Published 06.09.2006 00:04:00
  • Last modified 03.04.2025 01:03:51

Internet Explorer 6 on Windows XP SP2 allows remote attackers to execute arbitrary JavaScript in the context of the browser's session with an arbitrary intranet web server, by hosting script on an Internet web server that can be made inaccessible by ...

  • EPSS 54.57%
  • Published 31.08.2006 22:04:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code by instantiating certain Windows 2000 ActiveX COM Objects including (1) ciodm.dll, (2) myinfo.dll, (3) msdxm.ocx,...

Exploit
  • EPSS 76.08%
  • Published 30.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Heap-based buffer overflow in DirectAnimation.PathControl COM object (daxctle.ocx) in Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a Spline function call whose first ...

  • EPSS 72.36%
  • Published 23.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060824, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a l...

Exploit
  • EPSS 37.72%
  • Published 23.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (crash) via a long Color attribute in multiple DirectX Media Image DirectX Transforms ActiveX COM Objects from (a) dxtmsft.dll and (b) dxtmsft3.dll, including (1...

Exploit
  • EPSS 37.81%
  • Published 18.08.2006 19:04:00
  • Last modified 03.04.2025 01:03:51

The Terminal Services COM object (tsuserex.dll) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by instantiating it as an ActiveX object in Internet Explorer 6.0 SP1 on Microsoft Windows 2003 EE SP1 CN...

Exploit
  • EPSS 39.03%
  • Published 17.08.2006 01:04:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 6.0 SP1 and possibly other versions allows remote attackers to cause a denial of service and possibly execute arbitrary code by instantiating COM objects as ActiveX controls, including (1) imskdic.dll (Microsoft IME), (2) ...

  • EPSS 45.07%
  • Published 09.08.2006 00:04:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 5.01 and 6 does not properly identify the originating domain zone when handling redirects, which allows remote attackers to read cross-domain web pages and possibly execute code via unspecified vectors involving a crafted ...

  • EPSS 37.46%
  • Published 09.08.2006 00:04:00
  • Last modified 03.04.2025 01:03:51

Microsoft Internet Explorer 5.01 and 6 allows certain script to persist across navigations between pages, which allows remote attackers to obtain the window location of visited web pages in other domains or zones, aka "Window Location Information Dis...

  • EPSS 29.78%
  • Published 09.08.2006 00:04:00
  • Last modified 03.04.2025 01:03:51

Cross-site scripting (XSS) vulnerability in Internet Explorer 5.01 and 6 in Microsoft Windows 2000 SP4 permits access to local "HTML-embedded resource files" in the Microsoft Management Console (MMC) library, which allows remote authenticated users t...