Show filters
467 Total Results
Displaying 381-390 of 467
Sort by:
Attacker Value
Unknown
CVE-2011-0346
Disclosure Date: January 07, 2011 (last updated October 04, 2023)
Use-after-free vulnerability in the ReleaseInterface function in MSHTML.DLL in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the DOM implementation and the BreakAASpecial and BreakCircularMemoryReferences functions, as demonstrated by cross_fuzz, aka "MSHTML Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2010-3971
Disclosure Date: December 22, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in the CSharedStyleSheet::Notify function in the Cascading Style Sheets (CSS) parser in mshtml.dll, as used in Microsoft Internet Explorer 6 through 8 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a self-referential @import rule in a stylesheet, aka "CSS Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2010-3348
Disclosure Date: December 16, 2010 (last updated October 04, 2023)
Microsoft Internet Explorer 6, 7, and 8 does not prevent rendering of cached content as HTML, which allows remote attackers to access content from a different (1) domain or (2) zone via unspecified script code, aka "Cross-Domain Information Disclosure Vulnerability," a different vulnerability than CVE-2010-3342.
0
Attacker Value
Unknown
CVE-2010-3345
Disclosure Date: December 16, 2010 (last updated October 04, 2023)
Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML Element Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2010-3346
Disclosure Date: December 16, 2010 (last updated October 04, 2023)
Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML Element Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2010-3342
Disclosure Date: December 16, 2010 (last updated October 04, 2023)
Microsoft Internet Explorer 6, 7, and 8 does not prevent rendering of cached content as HTML, which allows remote attackers to access content from a different (1) domain or (2) zone via unspecified script code, aka "Cross-Domain Information Disclosure Vulnerability," a different vulnerability than CVE-2010-3348.
0
Attacker Value
Unknown
CVE-2010-3962
Disclosure Date: November 05, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code via vectors related to Cascading Style Sheets (CSS) token sequences and the clip attribute, aka an "invalid flag reference" issue or "Uninitialized Memory Corruption Vulnerability," as exploited in the wild in November 2010.
0
Attacker Value
Unknown
CVE-2010-3330
Disclosure Date: October 13, 2010 (last updated October 04, 2023)
Microsoft Internet Explorer 6 through 8 does not properly restrict script access to content from a different (1) domain or (2) zone, which allows remote attackers to obtain sensitive information via a crafted web site, aka "Cross-Domain Information Disclosure Vulnerability."
0
Attacker Value
Unknown
CVE-2010-3325
Disclosure Date: October 13, 2010 (last updated October 04, 2023)
Microsoft Internet Explorer 6 through 8 does not properly handle unspecified special characters in Cascading Style Sheets (CSS) documents, which allows remote attackers to obtain sensitive information from a different (1) domain or (2) zone via a crafted web site, aka "CSS Special Character Information Disclosure Vulnerability."
0
Attacker Value
Unknown
CVE-2010-3327
Disclosure Date: October 13, 2010 (last updated October 04, 2023)
The implementation of HTML content creation in Microsoft Internet Explorer 6 through 8 does not remove the Anchor element during pasting and editing, which might allow remote attackers to obtain sensitive deleted information by visiting a web page, aka "Anchor Element Information Disclosure Vulnerability."
0