Show filters
139 Total Results
Displaying 121-130 of 139
Sort by:
Attacker Value
Unknown
CVE-2002-1142
Disclosure Date: November 29, 2002 (last updated February 22, 2025)
Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 through 2.6, and Internet Explorer 5.01 through 6.0, allows remote attackers to execute code via a malformed HTTP request to the Data Stub.
0
Attacker Value
Unknown
CVE-2002-0152
Disclosure Date: April 22, 2002 (last updated February 22, 2025)
Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5.1, Outlook Express 5.0 through 5.0.2, Entourage v. X and 2001, PowerPoint v. X, 2001, and 98, and Excel v. X and 2001 for Macintosh.
0
Attacker Value
Unknown
CVE-2002-0153
Disclosure Date: April 22, 2002 (last updated February 22, 2025)
Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, aka the "Local Applescript Invocation" vulnerability.
0
Attacker Value
Unknown
CVE-2001-1497
Disclosure Date: December 31, 2001 (last updated February 22, 2025)
Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphanumeric characters used in a password by pressing certain control keys that jump between non-alphanumeric characters, which makes it easier to conduct a brute-force password guessing attack.
0
Attacker Value
Unknown
CVE-2001-1218
Disclosure Date: December 20, 2001 (last updated February 22, 2025)
Microsoft Internet Explorer for Unix 5.0SP1 allows local users to possibly cause a denial of service (crash) in CDE or the X server on Solaris 2.6 by rapidly scrolling Chinese characters or maximizing the window.
0
Attacker Value
Unknown
CVE-2000-1061
Disclosure Date: December 11, 2000 (last updated February 22, 2025)
Microsoft Virtual Machine (VM) in Internet Explorer 4.x and 5.x allows an unsigned applet to create and use ActiveX controls, which allows a remote attacker to bypass Internet Explorer's security settings and execute arbitrary commands via a malicious web page or email, aka the "Microsoft VM ActiveX Component" vulnerability.
0
Attacker Value
Unknown
CVE-2000-0768
Disclosure Date: October 20, 2000 (last updated February 22, 2025)
A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a variant of the "Frame Domain Verification" vulnerability.
0
Attacker Value
Unknown
CVE-2000-0519
Disclosure Date: June 05, 2000 (last updated February 22, 2025)
Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different "SSL Certificate Validation" vulnerabilities.
0
Attacker Value
Unknown
CVE-2000-0518
Disclosure Date: June 05, 2000 (last updated February 22, 2025)
Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different "SSL Certificate Validation" vulnerabilities.
0
Attacker Value
Unknown
CVE-2000-0160
Disclosure Date: February 21, 2000 (last updated February 22, 2025)
The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.
0