Show filters
206 Total Results
Displaying 81-90 of 206
Sort by:
Attacker Value
Unknown
CVE-2006-3640
Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 and 6 allows certain script to persist across navigations between pages, which allows remote attackers to obtain the window location of visited web pages in other domains or zones, aka "Window Location Information Disclosure Vulnerability."
0
Attacker Value
Unknown
CVE-2006-3643
Disclosure Date: August 09, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Internet Explorer 5.01 and 6 in Microsoft Windows 2000 SP4 permits access to local "HTML-embedded resource files" in the Microsoft Management Console (MMC) library, which allows remote authenticated users to execute arbitrary commands, aka "MMC Redirect Cross-Site Scripting Vulnerability."
0
Attacker Value
Unknown
CVE-2006-3638
Disclosure Date: August 08, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 and 6 does not properly handle uninitialized COM objects, which allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code, as demonstrated by the Nth function in the DirectAnimation.DATuple ActiveX control, aka "COM Object Instantiation Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2006-3451
Disclosure Date: August 08, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5 SP4 and 6 do not properly garbage collect when "multiple imports are used on a styleSheets collection" to construct a chain of Cascading Style Sheets (CSS), which allows remote attackers to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2006-3450
Disclosure Date: August 08, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using the document.getElementByID Javascript function to access crafted Cascading Style Sheet (CSS) elements, and possibly other unspecified vectors involving certain layout positioning combinations in an HTML file.
0
Attacker Value
Unknown
CVE-2006-3637
Disclosure Date: August 08, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle various HTML layout component combinations, which allows user-assisted remote attackers to execute arbitrary code via a crafted HTML file that leads to memory corruption, aka "HTML Rendering Memory Corruption Vulnerability."
0
Attacker Value
Unknown
CVE-2006-3943
Disclosure Date: July 31, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in NDFXArtEffects in Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) via long (1) RGBExtraColor, (2) RGBForeColor, and (3) RGBBackColor properties.
0
Attacker Value
Unknown
CVE-2006-3944
Disclosure Date: July 31, 2006 (last updated October 04, 2023)
Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) via a (1) Forms.ListBox.1 or (2) Forms.ListBox.1 object with the ListWidth property set to (a) 0x7fffffff, which triggers an integer overflow exception, or to (b) 0x7ffffffe, which triggers a null dereference.
0
Attacker Value
Unknown
CVE-2006-3910
Disclosure Date: July 28, 2006 (last updated October 04, 2023)
Internet Explorer 6 on Windows XP SP2, when Outlook is installed, allows remote attackers to cause a denial of service (crash) by calling the NewDefaultItem function of an OVCtl (OVCtl.OVCtl.1) ActiveX object, which triggers a null dereference.
0
Attacker Value
Unknown
CVE-2006-3730
Disclosure Date: July 21, 2006 (last updated October 04, 2023)
Integer overflow in Microsoft Internet Explorer 6 on Windows XP SP2 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a 0x7fffffff argument to the setSlice method on a WebViewFolderIcon ActiveX object, which leads to an invalid memory copy.
0