cbcvebase.

Microsoft Internet Explorer vulnerabilities

1,594 known vulnerabilities affecting microsoft/internet_explorer.

Total CVEs
1,594
CISA KEV
42
actively exploited
Public exploits
364
Exploited in wild
91
Severity breakdown
CRITICAL689HIGH451MEDIUM404LOW50

Vulnerabilities

Page 32 of 80
CVE-2013-3201P3CRITICALCVSS 9.3v9v102013-09-11
CVE-2013-3201 [CRITICAL] CWE-119 CVE-2013-3201: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3203, CVE-2013-3206, CVE-2013-3207, and CVE-2013-3209.
nvd
CVE-2008-3476P3CRITICALCVSS 9.3v5.01v6+1 more2008-10-15
CVE-2008-3476 [CRITICAL] CWE-399 CVE-2008-3476: Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle errors associated with access to Microsoft Internet Explorer 5.01 SP4 and 6 does not properly handle errors associated with access to uninitialized memory, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "HTML Objects Memory Corruption Vulnerability."
nvd
CVE-2007-0946P3CRITICALCVSS 9.3v7.02007-05-08
CVE-2007-0946 [CRITICAL] CVE-2007-0946: Unspecified vulnerability in Microsoft Internet Explorer 7 on Windows XP SP2, Windows Server 2003 SP Unspecified vulnerability in Microsoft Internet Explorer 7 on Windows XP SP2, Windows Server 2003 SP1 or SP2, or Windows Vista allows remote attackers to execute arbitrary code via crafted HTML objects, which results in memory corruption, aka the first of two "HTML Objects Memory Corruption Vulnerabilities" and a different issue than CVE-2007-0947.
nvd
CVE-2017-0130P3HIGHCVSS 7.5v9v10+1 more2017-03-17
CVE-2017-0130 [HIGH] CVE-2017-0130: The scripting engine in Microsoft Internet Explorer 9 through 11 allows remote attackers to execute The scripting engine in Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability." This vulnerability is different from that described in CVE-2017-0040.
nvd
CVE-2015-6134P3CRITICALCVSS 9.3v92015-12-09
CVE-2015-6134 [CRITICAL] CWE-119 CVE-2015-6134: Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6141.
nvd
CVE-2015-6141P3CRITICALCVSS 9.3v92015-12-09
CVE-2015-6141 [CRITICAL] CVE-2015-6141: Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6134.
nvd
CVE-2015-6149P3CRITICALCVSS 9.3v8v92015-12-09
CVE-2015-6149 [CRITICAL] CVE-2015-6149: Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a den Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6147.
nvd
CVE-2015-6147P3CRITICALCVSS 9.3v8v92015-12-09
CVE-2015-6147 [CRITICAL] CWE-119 CVE-2015-6147: Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a den Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6149.
nvd
CVE-2019-0940P3HIGHCVSS 7.5v10v112019-05-16
CVE-2019-0940 [HIGH] CWE-787 CVE-2019-0940: A remote code execution vulnerability exists in the way that Microsoft browsers access objects in me A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory, aka 'Microsoft Browser Memory Corruption Vulnerability'.
nvd
CVE-2012-4781P3CRITICALCVSS 9.3v6v7+3 more2012-12-12
CVE-2012-4781 [CRITICAL] CWE-94 CVE-2012-4781: Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to Use-after-free vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "InjectHTMLStream Use After Free Vulnerability."
nvd
CVE-2015-2448P3CRITICALCVSS 9.3v9v102015-08-14
CVE-2015-2448 [CRITICAL] CWE-119 CVE-2015-2448: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability."
nvd
CVE-2011-1254P3CRITICALCVSS 9.3v6v7+1 more2011-06-16
CVE-2011-1254 [CRITICAL] CWE-908 CVE-2011-1254: Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows rem Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Drag and Drop Memory Corruption Vulnerability."
nvd
CVE-2013-3917P3CRITICALCVSS 9.3v6v7+4 more2013-11-13
CVE-2013-3917 [CRITICAL] CVE-2013-3917: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3915.
nvd
CVE-2013-3916P3CRITICALCVSS 9.3v8v9+2 more2013-11-13
CVE-2013-3916 [CRITICAL] CVE-2013-3916: Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3912.
nvd
CVE-2014-4084P3CRITICALCVSS 9.3v102014-09-10
CVE-2014-4084 [CRITICAL] CWE-119 CVE-2014-4084: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4093.
nvd
CVE-2014-0310P3CRITICALCVSS 9.3v6v7+4 more2014-05-14
CVE-2014-0310 [CRITICAL] CWE-119 CVE-2014-0310: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-1815.
nvd
CVE-2014-4128P3CRITICALCVSS 9.3v6v7+4 more2014-10-15
CVE-2014-4128 [CRITICAL] CWE-20 CVE-2014-4128: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2008-0076P3CRITICALCVSS 9.3v6v72008-02-12
CVE-2008-0076 [CRITICAL] CWE-94 CVE-2008-0076: Unspecified vulnerability in Microsoft Internet Explorer 5.01, 6 SP1 and SP2, and 7 allows remote at Unspecified vulnerability in Microsoft Internet Explorer 5.01, 6 SP1 and SP2, and 7 allows remote attackers to execute arbitrary code via crafted HTML layout combinations, aka "HTML Rendering Memory Corruption Vulnerability."
nvd
CVE-2015-6155P3CRITICALCVSS 9.3v10v112015-12-09
CVE-2015-6155 [CRITICAL] CWE-119 CVE-2015-6155: Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary Microsoft Internet Explorer 10 and 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability."
nvd
CVE-2016-7283P3HIGHCVSS 8.8v9v10+1 more2016-12-20
CVE-2016-7283 [HIGH] CWE-119 CVE-2016-7283: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
Microsoft Internet Explorer vulnerabilities | cvebase