Microsoft Internet Explorer vulnerabilities
1,594 known vulnerabilities affecting microsoft/internet_explorer.
Total CVEs
1,594
CISA KEV
42
actively exploited
Public exploits
364
Exploited in wild
91
Severity breakdown
CRITICAL689HIGH451MEDIUM404LOW50
Vulnerabilities
Page 24 of 80
CVE-2014-6369P3CRITICALCVSS 9.3v9v10+1 more2014-12-11
CVE-2014-6369 [CRITICAL] CWE-20 CVE-2014-6369: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-0023P3CRITICALCVSS 9.3v10v92013-02-13
CVE-2013-0023 [CRITICAL] CWE-399 CVE-2013-0023: Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to exec
Use-after-free vulnerability in Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer CDispNode Use After Free Vulnerability."
nvd
CVE-2014-4129P3CRITICALCVSS 9.3v82014-10-15
CVE-2014-4129 [CRITICAL] CWE-20 CVE-2014-4129: Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-1288P3CRITICALCVSS 9.3v82013-03-13
CVE-2013-1288 [CRITICAL] CWE-399 CVE-2013-1288: Use-after-free vulnerability in Microsoft Internet Explorer 8 allows remote attackers to execute arb
Use-after-free vulnerability in Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer CTreeNode Use After Free Vulnerability."
nvd
CVE-2013-0094P3CRITICALCVSS 9.3v6v7+3 more2013-03-13
CVE-2013-0094 [CRITICAL] CWE-399 CVE-2013-0094: Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer removeChild Use After Free Vulnerability."
nvd
CVE-2013-0093P3CRITICALCVSS 9.3v6v7+3 more2013-03-13
CVE-2013-0093 [CRITICAL] CWE-399 CVE-2013-0093: Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer onBeforeCopy Use After Free Vulnerability."
nvd
CVE-2013-0087P3CRITICALCVSS 9.3v6v7+3 more2013-03-13
CVE-2013-0087 [CRITICAL] CWE-399 CVE-2013-0087: Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer OnResize Use After Free Vulnerability."
nvd
CVE-2013-0089P3CRITICALCVSS 9.3v6v7+3 more2013-03-13
CVE-2013-0089 [CRITICAL] CWE-399 CVE-2013-0089: Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer CMarkupBehaviorContext Use After Free Vulnerability."
nvd
CVE-2015-6083P3CRITICALCVSS 9.3v8v9+2 more2015-12-09
CVE-2015-6083 [CRITICAL] CWE-119 CVE-2015-6083: Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6151.
nvd
CVE-2015-6150P3CRITICALCVSS 9.3v7v8+3 more2015-12-09
CVE-2015-6150 [CRITICAL] CWE-119 CVE-2015-6150: Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6154.
nvd
CVE-2015-1767P3CRITICALCVSS 9.3v9v10+1 more2015-07-14
CVE-2015-1767 [CRITICAL] CWE-119 CVE-2015-1767: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2401 and CVE-2015-2408.
nvd
CVE-2015-6086P3MEDIUMCVSS 4.3PoCv9v10+1 more2015-11-11
CVE-2015-6086 [MEDIUM] CWE-200 CVE-2015-6086: Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information fro
Microsoft Internet Explorer 9 through 11 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability."
nvd
CVE-2015-2492P3CRITICALCVSS 9.3v7v8+3 more2015-09-09
CVE-2015-2492 [CRITICAL] CVE-2015-2492: Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-2015-2487, CVE-2015-2490, CVE-2015-2494, CVE-2015-2498, and CVE-2015-2499.
nvd
CVE-2015-2487P3CRITICALCVSS 9.3v7v8+3 more2015-09-09
CVE-2015-2487 [CRITICAL] CVE-2015-2487: Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2486, CVE-2015-2490, CVE-2015-2492, CVE-2015-2494, CVE-2015-2498, and CVE-2015-2499.
nvd
CVE-2015-2450P3CRITICALCVSS 9.3v9v10+1 more2015-08-14
CVE-2015-2450 [CRITICAL] CWE-119 CVE-2015-2450: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2451.
nvd
CVE-2015-2451P3CRITICALCVSS 9.3v9v10+1 more2015-08-14
CVE-2015-2451 [CRITICAL] CVE-2015-2451: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," a different vulnerability than CVE-2015-2450.
nvd
CVE-2009-0550P3CRITICALCVSS 9.3v5.01v6+1 more2009-04-15
CVE-2009-0550 [CRITICAL] CVE-2009-0550: Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 a
Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008; and WinINet in Microsoft Internet Explorer 5.01 SP4, 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on Windows Server 2003 SP1 and SP2, 7 on Windows Vista Gold and SP1, and 7 on Windows Server 2008; allows remot
nvd
CVE-2015-1745P3CRITICALCVSS 9.3v6v7+4 more2015-06-10
CVE-2015-1745 [CRITICAL] CVE-2015-1745: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-1735, CVE-2015-1740, CVE-2015-1744, and CVE-2015-1766.
nvd
CVE-2015-1747P3CRITICALCVSS 9.3v112015-06-10
CVE-2015-1747 [CRITICAL] CVE-2015-1747: Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-1732, CVE-2015-1742, CVE-2015-1750, and CVE-2015-1753.
nvd
CVE-2014-6330P3CRITICALCVSS 9.3v92014-12-11
CVE-2014-6330 [CRITICAL] CWE-119 CVE-2014-6330: Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd