Microsoft Internet Explorer vulnerabilities
1,594 known vulnerabilities affecting microsoft/internet_explorer.
Total CVEs
1,594
CISA KEV
40
actively exploited
Public exploits
364
Exploited in wild
48
Severity breakdown
CRITICAL690HIGH450MEDIUM404LOW50
Vulnerabilities
Page 32 of 80
CVE-2014-6344CRITICALCVSS 9.3v8v92014-11-11
CVE-2014-6344 [CRITICAL] CWE-399 CVE-2014-6344: Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a den
Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-6348CRITICALCVSS 9.3v92014-11-11
CVE-2014-6348 [CRITICAL] CVE-2014-6348: Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-6342.
nvd
CVE-2014-4143CRITICALCVSS 9.3v6v7+4 more2014-11-11
CVE-2014-4143 [CRITICAL] CWE-399 CVE-2014-4143: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-6341.
nvd
CVE-2014-6347CRITICALCVSS 9.3v112014-11-11
CVE-2014-6347 [CRITICAL] CWE-399 CVE-2014-6347: Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-6341CRITICALCVSS 9.3v6v7+4 more2014-11-11
CVE-2014-6341 [CRITICAL] CVE-2014-6341: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4143.
nvd
CVE-2014-6353CRITICALCVSS 9.3v6v7+3 more2014-11-11
CVE-2014-6353 [CRITICAL] CWE-399 CVE-2014-6353: Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-6337CRITICALCVSS 9.3v10v112014-11-11
CVE-2014-6337 [CRITICAL] CWE-399 CVE-2014-6337: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-6351CRITICALCVSS 9.3v8v9+2 more2014-11-11
CVE-2014-6351 [CRITICAL] CWE-399 CVE-2014-6351: Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-6350MEDIUMCVSS 4.3v10v112014-11-11
CVE-2014-6350 [MEDIUM] CVE-2014-6350: Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web s
Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability," a different vulnerability than CVE-2014-6349.
nvd
CVE-2014-6340MEDIUMCVSS 4.3v6v7+4 more2014-11-11
CVE-2014-6340 [MEDIUM] CWE-200 CVE-2014-6340: Microsoft Internet Explorer 6 through 11 allows remote attackers to read content from a different (1
Microsoft Internet Explorer 6 through 11 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclosure Vulnerability."
nvd
CVE-2014-6339MEDIUMCVSS 5.0v8v92014-11-11
CVE-2014-6339 [MEDIUM] CWE-264 CVE-2014-6339: Microsoft Internet Explorer 8 and 9 allows remote attackers to bypass the ASLR protection mechanism
Microsoft Internet Explorer 8 and 9 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."
nvd
CVE-2014-6323MEDIUMCVSS 4.3v7v8+3 more2014-11-11
CVE-2014-6323 [MEDIUM] CWE-200 CVE-2014-6323: Microsoft Internet Explorer 7 through 11 allows remote attackers to obtain sensitive clipboard infor
Microsoft Internet Explorer 7 through 11 allows remote attackers to obtain sensitive clipboard information via a crafted web site, aka "Internet Explorer Clipboard Information Disclosure Vulnerability."
nvd
CVE-2014-6349MEDIUMCVSS 4.3v10v112014-11-11
CVE-2014-6349 [MEDIUM] CWE-264 CVE-2014-6349: Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web s
Microsoft Internet Explorer 10 and 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability," a different vulnerability than CVE-2014-6350.
nvd
CVE-2014-6345MEDIUMCVSS 4.3v9v102014-11-11
CVE-2014-6345 [MEDIUM] CWE-200 CVE-2014-6345: Microsoft Internet Explorer 9 and 10 allows remote attackers to read content from a different (1) do
Microsoft Internet Explorer 9 and 10 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclosure Vulnerability."
nvd
CVE-2014-6346MEDIUMCVSS 4.3v8v9+2 more2014-11-11
CVE-2014-6346 [MEDIUM] CWE-200 CVE-2014-6346: Microsoft Internet Explorer 8 through 11 allows remote attackers to read content from a different (1
Microsoft Internet Explorer 8 through 11 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclosure Vulnerability."
nvd
CVE-2014-4126CRITICALCVSS 9.3v10v112014-10-15
CVE-2014-4126 [CRITICAL] CWE-20 CVE-2014-4126: Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a d
Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-4133CRITICALCVSS 9.3v6v72014-10-15
CVE-2014-4133 [CRITICAL] CWE-20 CVE-2014-4133: Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a den
Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4137.
nvd
CVE-2014-4128CRITICALCVSS 9.3v6v7+4 more2014-10-15
CVE-2014-4128 [CRITICAL] CWE-20 CVE-2014-4128: Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-4129CRITICALCVSS 9.3v82014-10-15
CVE-2014-4129 [CRITICAL] CWE-20 CVE-2014-4129: Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of
Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-4137CRITICALCVSS 9.3v6v72014-10-15
CVE-2014-4137 [CRITICAL] CVE-2014-4137: Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a den
Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4133.
nvd