Microsoft Internet Explorer vulnerabilities
1,594 known vulnerabilities affecting microsoft/internet_explorer.
Total CVEs
1,594
CISA KEV
42
actively exploited
Public exploits
364
Exploited in wild
91
Severity breakdown
CRITICAL689HIGH451MEDIUM404LOW50
Vulnerabilities
Page 11 of 80
CVE-2018-8372P2HIGHCVSS 7.5PoCv112018-08-15
CVE-2018-8372 [HIGH] CVE-2018-8372: A remote code execution vulnerability exists in the way the scripting engine handles objects in memo
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge. This CVE ID is unique from CVE-2018-8353, CVE-2018-8355, CVE-2018-8359, CVE-2018-8371, CVE-2018-8373, CVE-2018-8385, C
nvd
CVE-2014-2775P2CRITICALCVSS 9.3PoCv9v10+1 more2014-06-11
CVE-2014-2775 [CRITICAL] CVE-2014-2775: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1773, CVE-2014-1783, CVE-2014-1784, CVE-2014-1786, CVE-2014-1795, CVE-2014-1805, CVE-2014-2758, CVE
nvd
CVE-2013-3120P3CRITICALCVSS 9.3PoCv102013-06-12
CVE-2013-3120 [CRITICAL] CVE-2013-3120: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3118 and CVE-2013-3125.
nvd
CVE-2014-1791P2CRITICALCVSS 9.3PoCv7v8+3 more2014-06-11
CVE-2014-1791 [CRITICAL] CWE-119 CVE-2014-1791: Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-1800P2CRITICALCVSS 9.3PoCv8v9+2 more2014-06-11
CVE-2014-1800 [CRITICAL] CWE-119 CVE-2014-1800: Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-1789P2CRITICALCVSS 9.3PoCv102014-06-11
CVE-2014-1789 [CRITICAL] CWE-119 CVE-2014-1789: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1790.
nvd
CVE-2013-3111P3CRITICALCVSS 9.3PoCv8v9+1 more2013-06-12
CVE-2013-3111 [CRITICAL] CWE-119 CVE-2013-3111: Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3123.
nvd
CVE-2006-1189P3CRITICALCVSS 10.0PoCv5.01v5.1+2 more2006-04-11
CVE-2006-1189 [CRITICAL] CWE-119 CVE-2006-1189: Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01 through 6 allows remote attackers
Buffer overflow in URLMON.DLL in Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via a crafted URL with an International Domain Name (IDN) using double-byte character sets (DBCS), aka the "Double Byte Character Parsing Memory Corruption Vulnerability."
nvd
CVE-2013-3143P3CRITICALCVSS 9.3PoCv9v102013-07-10
CVE-2013-3143 [CRITICAL] CWE-94 CVE-2013-3143: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3161.
nvd
CVE-2014-1794P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-1794 [CRITICAL] CVE-2014-1794: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1797, CVE-2014-1802, CVE-2014-2756, CVE-2014-2763, CVE-2014-2764, CVE-2
nvd
CVE-2014-1796P2CRITICALCVSS 9.3PoCv6v8+3 more2014-06-11
CVE-2014-1796 [CRITICAL] CWE-119 CVE-2014-1796: Microsoft Internet Explorer 6 and 8 through 11 allows remote attackers to execute arbitrary code or
Microsoft Internet Explorer 6 and 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-1780P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-1780 [CRITICAL] CVE-2014-1780: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1794, CVE-2014-1797, CVE-2014-1802, CVE-2014-2756, CVE-2014-2763, CVE-2014-2764, CVE-2
nvd
CVE-2014-2769P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-2769 [CRITICAL] CVE-2014-2769: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1794, CVE-2014-1797, CVE-2014-1802, CVE-2014-2756, CVE-2014-2763, CVE-2
nvd
CVE-2014-2764P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-2764 [CRITICAL] CVE-2014-2764: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1794, CVE-2014-1797, CVE-2014-1802, CVE-2014-2756, CVE-2014-2763, CVE-2
nvd
CVE-2014-2756P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-2756 [CRITICAL] CVE-2014-2756: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1794, CVE-2014-1797, CVE-2014-1802, CVE-2014-2763, CVE-2014-2764, CVE-2
nvd
CVE-2014-2771P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-2771 [CRITICAL] CVE-2014-2771: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1794, CVE-2014-1797, CVE-2014-1802, CVE-2014-2756, CVE-2014-2763, CVE-2
nvd
CVE-2014-2763P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-2763 [CRITICAL] CVE-2014-2763: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1794, CVE-2014-1797, CVE-2014-1802, CVE-2014-2756, CVE-2014-2764, CVE-2
nvd
CVE-2014-1802P2CRITICALCVSS 9.3PoCv10v112014-06-11
CVE-2014-1802 [CRITICAL] CVE-2014-1802: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1772, CVE-2014-1780, CVE-2014-1794, CVE-2014-1797, CVE-2014-2756, CVE-2014-2763, CVE-2014-2764, CVE-2
nvd
CVE-2013-3147P3CRITICALCVSS 9.3PoCv6v7+2 more2013-07-10
CVE-2013-3147 [CRITICAL] CWE-94 CVE-2013-3147: Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a
Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3149P3CRITICALCVSS 9.3PoCv7v82013-07-10
CVE-2013-3149 [CRITICAL] CWE-94 CVE-2013-3149: Microsoft Internet Explorer 7 and 8 allows remote attackers to execute arbitrary code or cause a den
Microsoft Internet Explorer 7 and 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd