Show filters
141 Total Results
Displaying 71-80 of 141
Sort by:
Attacker Value
Unknown

CVE-2006-3639

Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 and 6 does not properly identify the originating domain zone when handling redirects, which allows remote attackers to read cross-domain web pages and possibly execute code via unspecified vectors involving a crafted web page, aka "Source Element Cross-Domain Vulnerability."
0
Attacker Value
Unknown

CVE-2006-3640

Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 and 6 allows certain script to persist across navigations between pages, which allows remote attackers to obtain the window location of visited web pages in other domains or zones, aka "Window Location Information Disclosure Vulnerability."
0
Attacker Value
Unknown

CVE-2006-3643

Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Internet Explorer 5.01 and 6 in Microsoft Windows 2000 SP4 permits access to local "HTML-embedded resource files" in the Microsoft Management Console (MMC) library, which allows remote authenticated users to execute arbitrary commands, aka "MMC Redirect Cross-Site Scripting Vulnerability."
0
Attacker Value
Unknown

CVE-2006-3637

Disclosure Date: August 08, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle various HTML layout component combinations, which allows user-assisted remote attackers to execute arbitrary code via a crafted HTML file that leads to memory corruption, aka "HTML Rendering Memory Corruption Vulnerability."
0
Attacker Value
Unknown

CVE-2006-2382

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to execute arbitrary code via crafted UTF-8 encoded HTML that results in size discrepancies during conversion to Unicode, aka "HTML Decoding Memory Corruption Vulnerability."
0
Attacker Value
Unknown

CVE-2006-2384

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to conduct spoofing and phishing attacks by using a modal browser window in a way that preserves the original address bar and trusted UI of a trusted site, even after the browser has been navigated to a malicious site, aka the "Address Bar Spoofing Vulnerability."
0
Attacker Value
Unknown

CVE-2006-2383

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows remote attackers to execute arbitrary code via "unexpected data" related to "parameter validation" in the DXImageTransform.Microsoft.Light ActiveX control, which causes Internet Explorer to crash in a way that enables the code execution.
0
Attacker Value
Unknown

CVE-2006-2385

Disclosure Date: June 13, 2006 (last updated October 04, 2023)
Unspecified vulnerability in Microsoft Internet Explorer 5.01 SP4 and 6 SP1 and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted web page that triggers memory corruption when it is saved as a multipart HTML (.mht) file.
0
Attacker Value
Unknown

CVE-2006-1190

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 through 6 does not always return the correct IOleClientSite information when dynamically creating an embedded object, which could cause Internet Explorer to run the object in the wrong security context or zone, and allow remote attackers to execute arbitrary code.
0
Attacker Value
Unknown

CVE-2006-1186

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via by instantiating the (1) Mdt2gddr.dll, (2) Mdt2dd.dll, and (3) Mdt2gddo.dll COM objects as ActiveX controls, which leads to memory corruption.
0