Microsoft Internet Explorer vulnerabilities
1,594 known vulnerabilities affecting microsoft/internet_explorer.
Total CVEs
1,594
CISA KEV
40
actively exploited
Public exploits
364
Exploited in wild
48
Severity breakdown
CRITICAL690HIGH450MEDIUM404LOW50
Vulnerabilities
Page 80 of 80
CVE-1999-0468HIGHCVSS 8.2v5.01999-04-09
CVE-1999-0468 [HIGH] CWE-200 CVE-1999-0468: Internet Explorer 5.0 allows a remote server to read arbitrary files on the client's file system usi
Internet Explorer 5.0 allows a remote server to read arbitrary files on the client's file system using the Microsoft Scriptlet Component.
nvd
CVE-1999-0469MEDIUMCVSS 5.0v5.01999-04-01
CVE-1999-0469 [MEDIUM] CVE-1999-0469: Internet Explorer 5.0 allows window spoofing, allowing a remote attacker to spoof a legitimate web s
Internet Explorer 5.0 allows window spoofing, allowing a remote attacker to spoof a legitimate web site and capture information from the client.
nvd
CVE-1999-1370HIGHCVSS 7.2v5.01999-03-23
CVE-1999-1370 [HIGH] CVE-1999-1370: The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could
The setup wizard (ie5setup.exe) for Internet Explorer 5.0 disables (1) the screen saver, which could leave the system open to users with physical access if a failure occurs during an unattended installation, and (2) the Task Scheduler Service, which might prevent the scheduled execution of security-critical programs.
nvd
CVE-1999-1453LOWCVSS 2.6PoCv4.01999-02-02
CVE-1999-1453 [LOW] CVE-1999-1453: Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of t
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object.
nvd
CVE-1999-0869LOWCVSS 2.6PoCv3.0v3.0.1+4 more1998-12-01
CVE-1999-0869 [LOW] CVE-1999-0869: Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of a
Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka frame spoofing.
nvd
CVE-1999-0870LOWCVSS 2.6v4.0.11998-10-01
CVE-1999-0870 [LOW] CVE-1999-0870: Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into t
Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into the file upload control, aka untrusted scripted paste.
nvd
CVE-1999-0871LOWCVSS 2.6v4.0v4.0.11998-09-04
CVE-1999-0871 [LOW] CVE-1999-0871: Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security,
Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security, aka the "Cross Frame Navigate" vulnerability.
nvd
CVE-1999-1447MEDIUMCVSS 5.0v4.01998-07-28
CVE-1999-1447 [MEDIUM] CVE-1999-1447: Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code tha
Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CLASSID parameter in an OBJECT tag.
nvd
CVE-1999-0537HIGHCVSS 7.5v6.0.29001998-04-01
CVE-1999-0537 [HIGH] CVE-1999-0537: A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of
A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc.
nvd
CVE-1999-0967CRITICALCVSS 10.0v4.01997-11-01
CVE-1999-0967 [CRITICAL] CVE-1999-0967: Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer
Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol.
nvd
CVE-1999-1446LOWCVSS 2.1v3.01997-08-05
CVE-1999-1446 [LOW] CVE-1999-1446: Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located i
Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Internet Files and History folders, which are not cleared when the user selects the "Clear History" option, and are not visible when the user browses the folders because of tailored displays.
nvd
CVE-1999-0031LOWCVSS 2.6v3.0v4.01997-07-08
CVE-1999-0031 [LOW] CVE-1999-0031: JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers
JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability.
nvd
CVE-1999-0280HIGHCVSS 7.5v3.0v3.0.11997-04-01
CVE-1999-0280 [HIGH] CVE-1999-0280: Remote command execution in Microsoft Internet Explorer using .lnk and .url files.
Remote command execution in Microsoft Internet Explorer using .lnk and .url files.
nvd
CVE-1999-1128MEDIUMCVSS 5.1v3.0.11997-03-01
CVE-1999-1128 [MEDIUM] CVE-1999-1128: Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands
Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.
nvd
← Previous80 / 80