Show filters
206 Total Results
Displaying 101-110 of 206
Sort by:
Attacker Value
Unknown

CVE-2006-2385

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted web page that triggers memory corruption when it is saved as a multipart HTML (.mht) file.
0
Attacker Value
Unknown

CVE-2006-2900

Disclosure Date: June 07, 2006 (last updated October 04, 2023)
Internet Explorer 6 allows user-assisted remote attackers to read arbitrary files by tricking a user into typing the characters of the target filename in a text box and using the OnKeyDown, OnKeyPress, and OnKeyUp Javascript keystroke events to change the focus and cause those characters to be inserted into a file upload input control, which can then upload the file when the user submits the form.
0
Attacker Value
Unknown

CVE-2006-2766

Disclosure Date: June 02, 2006 (last updated October 04, 2023)
Buffer overflow in INETCOMM.DLL, as used in Microsoft Internet Explorer 6.0 through 6.0 SP2, Windows Explorer, Outlook Express 6, and possibly other programs, allows remote user-assisted attackers to cause a denial of service (application crash) via a long mhtml URI in the URL value in a URL file.
0
Attacker Value
Unknown

CVE-2006-2094

Disclosure Date: April 29, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer before Windows XP Service Pack 2 and Windows Server 2003 Service Pack 1, when Prompt is configured in Security Settings, uses modal dialogs to verify that a user wishes to run an ActiveX control or perform other risky actions, which allows user-assisted remote attackers to construct a race condition that tricks a user into clicking an object or pressing keys that are actually applied to a "Yes" approval for executing the control.
0
Attacker Value
Unknown

CVE-2006-1186

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via by instantiating the (1) Mdt2gddr.dll, (2) Mdt2dd.dll, and (3) Mdt2gddo.dll COM objects as ActiveX controls, which leads to memory corruption.
0
Attacker Value
Unknown

CVE-2006-1192

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 through 6 allows remote attackers to conduct phishing attacks by spoofing the address bar and other parts of the trust UI via unknown methods that allow "window content to persist" after the user has navigated to another site, aka the "Address Bar Spoofing Vulnerability." NOTE: this is a different vulnerability than CVE-2006-1626.
0
Attacker Value
Unknown

CVE-2006-1185

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Unspecified vulnerability in Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via certain invalid HTML that causes memory corruption.
0
Attacker Value
Unknown

CVE-2006-1188

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via HTML elements with a certain crafted tag, which leads to memory corruption.
0
Attacker Value
Unknown

CVE-2006-1719

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) via any scrollbar Cascading Style Sheets (CSS) property.
0
Attacker Value
Unknown

CVE-2006-1388

Disclosure Date: March 24, 2006 (last updated February 22, 2025)
Unspecified vulnerability in Microsoft Internet Explorer 6.0 allows remote attackers to execute HTA files via unknown vectors.
0