Show filters
33 Total Results
Displaying 21-30 of 33
Sort by:
Attacker Value
Unknown

CVE-2004-0212

Disclosure Date: August 06, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in the Task Scheduler for Windows 2000 and XP, and Internet Explorer 6 on Windows NT 4.0, allows local or remote attackers to execute arbitrary code via a .job file containing long parameters, as demonstrated using Internet Explorer and accessing a .job file on an anonymous share.
0
Attacker Value
Unknown

CVE-2002-0153

Disclosure Date: April 22, 2002 (last updated February 22, 2025)
Internet Explorer 5.1 for Macintosh allows remote attackers to bypass security checks and invoke local AppleScripts within a specific HTML element, aka the "Local Applescript Invocation" vulnerability.
0
Attacker Value
Unknown

CVE-2001-1497

Disclosure Date: December 31, 2001 (last updated February 22, 2025)
Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphanumeric characters used in a password by pressing certain control keys that jump between non-alphanumeric characters, which makes it easier to conduct a brute-force password guessing attack.
0
Attacker Value
Unknown

CVE-2000-0768

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a variant of the "Frame Domain Verification" vulnerability.
0
Attacker Value
Unknown

CVE-2000-0519

Disclosure Date: June 05, 2000 (last updated February 22, 2025)
Internet Explorer 4.x and 5.x does not properly re-validate an SSL certificate if the user establishes a new SSL session with the same server during the same Internet Explorer session, aka one of two different "SSL Certificate Validation" vulnerabilities.
0
Attacker Value
Unknown

CVE-2000-0518

Disclosure Date: June 05, 2000 (last updated February 22, 2025)
Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different "SSL Certificate Validation" vulnerabilities.
0
Attacker Value
Unknown

CVE-2000-0162

Disclosure Date: February 18, 2000 (last updated February 22, 2025)
The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicious Java applet that escapes the Java sandbox, aka the "VM File Reading" vulnerability.
0
Attacker Value
Unknown

CVE-1999-0876

Disclosure Date: January 04, 2000 (last updated February 22, 2025)
Buffer overflow in Internet Explorer 4.0 via EMBED tag.
0
Attacker Value
Unknown

CVE-2000-0028

Disclosure Date: December 23, 1999 (last updated February 22, 2025)
Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function.
0
Attacker Value
Unknown

CVE-2000-0329

Disclosure Date: November 11, 1999 (last updated February 22, 2025)
A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.
0