cbcvebase.

Microsoft Internet Explorer vulnerabilities

1,594 known vulnerabilities affecting microsoft/internet_explorer.

Total CVEs
1,594
CISA KEV
42
actively exploited
Public exploits
364
Exploited in wild
91
Severity breakdown
CRITICAL689HIGH451MEDIUM404LOW50

Vulnerabilities

Page 36 of 80
CVE-2013-3112P3CRITICALCVSS 9.3v6v7+3 more2013-06-12
CVE-2013-3112 [CRITICAL] CWE-119 CVE-2013-3112: Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3113, CVE-2013-3121, CVE-2013-3139, and CVE-2013-3142.
nvd
CVE-2013-3187P3CRITICALCVSS 9.3v9v102013-08-14
CVE-2013-3187 [CRITICAL] CWE-119 CVE-2013-3187: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3191 and CVE-2013-3193.
nvd
CVE-2013-3193P3CRITICALCVSS 9.3v9v102013-08-14
CVE-2013-3193 [CRITICAL] CVE-2013-3193: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3187 and CVE-2013-3191.
nvd
CVE-2013-3199P3CRITICALCVSS 9.3v6v7+3 more2013-08-14
CVE-2013-3199 [CRITICAL] CWE-119 CVE-2013-3199: Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3202P3CRITICALCVSS 9.3v102013-09-11
CVE-2013-3202 [CRITICAL] CWE-119 CVE-2013-3202: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3204P3CRITICALCVSS 9.3v7v8+2 more2013-09-11
CVE-2013-3204 [CRITICAL] CWE-119 CVE-2013-3204: Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3116P3CRITICALCVSS 9.3v7v8+1 more2013-06-12
CVE-2013-3116 [CRITICAL] CWE-119 CVE-2013-3116: Microsoft Internet Explorer 7 through 9 allows remote attackers to execute arbitrary code or cause a Microsoft Internet Explorer 7 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3911P3CRITICALCVSS 9.3v9v102013-11-13
CVE-2013-3911 [CRITICAL] CWE-119 CVE-2013-3911: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2010-1259P3CRITICALCVSS 9.3v8v6+1 more2010-06-08
CVE-2010-1259 [CRITICAL] CWE-94 CVE-2010-1259: Microsoft Internet Explorer 6 SP1 and SP2, 7, and 8 allows remote attackers to execute arbitrary cod Microsoft Internet Explorer 6 SP1 and SP2, 7, and 8 allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."
nvd
CVE-1999-0891P4MEDIUMCVSS 5.0PoCv5.01999-09-01
CVE-1999-0891 [MEDIUM] CWE-94 CVE-1999-0891: The "download behavior" in Internet Explorer 5 allows remote attackers to read arbitrary files via a The "download behavior" in Internet Explorer 5 allows remote attackers to read arbitrary files via a server-side redirect.
nvd
CVE-2016-3385P3HIGHCVSS 7.5v9v10+1 more2016-10-14
CVE-2016-3385 [HIGH] CWE-119 CVE-2016-3385: The scripting engine in Microsoft Internet Explorer 9 through 11 allows remote attackers to execute The scripting engine in Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability."
nvd
CVE-2009-3671P3HIGHCVSS 8.1v5.0.1v6+2 more2009-12-09
CVE-2009-3671 [HIGH] CWE-399 CVE-2009-3671: Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attack Microsoft Internet Explorer 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability," a different vulnerability than CVE-2009-3674.
nvd
CVE-2010-1118P3CRITICALCVSS 10.0v82010-03-25
CVE-2010-1118 [CRITICAL] CVE-2010-1118: Unspecified vulnerability in Internet Explorer 8 on Microsoft Windows 7 allows remote attackers to e Unspecified vulnerability in Internet Explorer 8 on Microsoft Windows 7 allows remote attackers to execute arbitrary code via unknown vectors, possibly related to a use-after-free issue, as demonstrated by Peter Vreugdenhil during a Pwn2Own competition at CanSecWest 2010.
nvd
CVE-2014-0272P3CRITICALCVSS 9.3v8v9+1 more2014-02-12
CVE-2014-0272 [CRITICAL] CWE-119 CVE-2014-0272: Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-0269P3CRITICALCVSS 9.3v6v7+3 more2014-02-12
CVE-2014-0269 [CRITICAL] CWE-119 CVE-2014-0269: Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2014-4134P3CRITICALCVSS 9.3v6v7+1 more2014-10-15
CVE-2014-4134 [CRITICAL] CWE-20 CVE-2014-4134: Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2011-1261P3CRITICALCVSS 9.3v6v7+2 more2011-06-16
CVE-2011-1261 [CRITICAL] CWE-908 CVE-2011-1261: Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows rem Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, aka "Selection Object Memory Corruption Vulnerability."
nvd
CVE-2007-3027P3CRITICALCVSS 9.3v5.01v6+1 more2007-06-12
CVE-2007-3027 [CRITICAL] CVE-2007-3027: Race condition in Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbi Race condition in Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code by causing Internet Explorer to install multiple language packs in a way that triggers memory corruption, aka "Language Pack Installation Vulnerability."
nvd
CVE-2014-0278P3CRITICALCVSS 9.3v82014-02-12
CVE-2014-0278 [CRITICAL] CVE-2014-0278: Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0277 and CVE-2014-0279.
nvd
CVE-2014-0280P3CRITICALCVSS 9.3v6v7+1 more2014-02-12
CVE-2014-0280 [CRITICAL] CWE-119 CVE-2014-0280: Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
Microsoft Internet Explorer vulnerabilities | cvebase