Microsoft Internet Explorer vulnerabilities
1,594 known vulnerabilities affecting microsoft/internet_explorer.
Total CVEs
1,594
CISA KEV
40
actively exploited
Public exploits
364
Exploited in wild
48
Severity breakdown
CRITICAL690HIGH450MEDIUM404LOW50
Vulnerabilities
Page 44 of 80
CVE-2013-3914CRITICALCVSS 9.3v9v10+1 more2013-11-13
CVE-2013-3914 [CRITICAL] CWE-119 CVE-2013-3914: Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3912CRITICALCVSS 9.3v8v9+2 more2013-11-13
CVE-2013-3912 [CRITICAL] CWE-119 CVE-2013-3912: Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3916.
nvd
CVE-2013-3911CRITICALCVSS 9.3v9v102013-11-13
CVE-2013-3911 [CRITICAL] CWE-119 CVE-2013-3911: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3909MEDIUMCVSS 4.3v6v7+1 more2013-11-13
CVE-2013-3909 [MEDIUM] CWE-200 CVE-2013-3909: Microsoft Internet Explorer 6 through 8 allows remote attackers to read content from a different (1)
Microsoft Internet Explorer 6 through 8 allows remote attackers to read content from a different (1) domain or (2) zone via crafted characters in Cascading Style Sheets (CSS) token sequences, aka "Internet Explorer Information Disclosure Vulnerability."
nvd
CVE-2013-3908MEDIUMCVSS 4.3v6v7+3 more2013-11-13
CVE-2013-3908 [MEDIUM] CWE-200 CVE-2013-3908: Microsoft Internet Explorer 6 through 10 allows user-assisted remote attackers to bypass the Same Or
Microsoft Internet Explorer 6 through 10 allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information from any visited document via a crafted web page that is not properly handled during a print-preview action, aka "Internet Explorer Information Disclosure Vulnerability."
nvd
CVE-2013-3885CRITICALCVSS 9.3v102013-10-09
CVE-2013-3885 [CRITICAL] CVE-2013-3885: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3872, CVE-2013-3873, and CVE-2013-3882.
nvd
CVE-2013-3872CRITICALCVSS 9.3v102013-10-09
CVE-2013-3872 [CRITICAL] CWE-20 CVE-2013-3872: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3873, CVE-2013-3882, and CVE-2013-3885.
nvd
CVE-2013-3871CRITICALCVSS 9.3v6v7+3 more2013-10-09
CVE-2013-3871 [CRITICAL] CWE-119 CVE-2013-3871: Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3873CRITICALCVSS 9.3v102013-10-09
CVE-2013-3873 [CRITICAL] CVE-2013-3873: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3872, CVE-2013-3882, and CVE-2013-3885.
nvd
CVE-2013-3882CRITICALCVSS 9.3v102013-10-09
CVE-2013-3882 [CRITICAL] CVE-2013-3882: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3872, CVE-2013-3873, and CVE-2013-3885.
nvd
CVE-2013-3874CRITICALCVSS 9.3v92013-10-09
CVE-2013-3874 [CRITICAL] CWE-119 CVE-2013-3874: Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of
Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3875CRITICALCVSS 9.3v8v92013-10-09
CVE-2013-3875 [CRITICAL] CWE-119 CVE-2013-3875: Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a den
Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3886CRITICALCVSS 9.3v9v102013-10-09
CVE-2013-3886 [CRITICAL] CWE-119 CVE-2013-3886: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3897HIGHCVSS 8.8KEVPoCv6v7+4 more2013-10-09
CVE-2013-3897 [HIGH] CWE-416 CVE-2013-3897: Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explor
Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted JavaScript code that uses the onpropertychange event handler, as exploited in the wild in September and October 2013, aka "Inter
nvd
CVE-2013-3893HIGHCVSS 8.8KEVPoCv6v7+4 more2013-09-18
CVE-2013-3893 [HIGH] CWE-399 CVE-2013-3893: Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Intern
Use-after-free vulnerability in the SetMouseCapture implementation in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code via crafted JavaScript strings, as demonstrated by use of an ms-help: URL that triggers loading of hxds.dll.
nvd
CVE-2013-3202CRITICALCVSS 9.3v102013-09-11
CVE-2013-3202 [CRITICAL] CWE-119 CVE-2013-3202: Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial o
Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3845CRITICALCVSS 9.3v8v92013-09-11
CVE-2013-3845 [CRITICAL] CWE-119 CVE-2013-3845: Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a den
Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3208CRITICALCVSS 9.3v8v9+1 more2013-09-11
CVE-2013-3208 [CRITICAL] CWE-119 CVE-2013-3208: Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause
Microsoft Internet Explorer 8 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."
nvd
CVE-2013-3207CRITICALCVSS 9.3v9v102013-09-11
CVE-2013-3207 [CRITICAL] CVE-2013-3207: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3201, CVE-2013-3203, CVE-2013-3206, and CVE-2013-3209.
nvd
CVE-2013-3203CRITICALCVSS 9.3v9v102013-09-11
CVE-2013-3203 [CRITICAL] CVE-2013-3203: Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a de
Microsoft Internet Explorer 9 and 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3201, CVE-2013-3206, CVE-2013-3207, and CVE-2013-3209.
nvd