| Vuln ID | Summary | CVSS Severity |
|---|---|---|
| CVE-2014-0299 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0305 and CVE-2014-0311. Published: March 12, 2014; 1:15:19 AM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-7331 |
The Microsoft.XMLDOM ActiveX control in Microsoft Windows 8.1 and earlier allows remote attackers to determine the existence of local pathnames, UNC share pathnames, intranet hostnames, and intranet IP addresses by examining error codes, as demonstrated by a res:// URL, and exploited in the wild in February 2014. Published: February 26, 2014; 9:55:08 AM -0500 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
| CVE-2014-0286 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0275 and CVE-2014-0285. Published: February 11, 2014; 11:50:40 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2014-0285 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0275 and CVE-2014-0286. Published: February 11, 2014; 11:50:40 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2014-0280 |
Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." Published: February 11, 2014; 11:50:40 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2014-0275 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0285 and CVE-2014-0286. Published: February 11, 2014; 11:50:40 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2014-0271 |
The VBScript engine in Microsoft Internet Explorer 6 through 11, and VBScript 5.6 through 5.8, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability." Published: February 11, 2014; 11:50:40 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2014-0269 |
Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." Published: February 11, 2014; 11:50:40 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-5049 |
Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." Published: December 10, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-5048 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-5047. Published: December 10, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-5047 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-5048. Published: December 10, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-6912 |
Cross-site scripting (XSS) vulnerability in a calendar component in Cybozu Garoon before 3.7.2, when Internet Explorer 6 through 9 is used, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. Published: December 05, 2013; 7:55:37 AM -0500 |
V3.x:(not available) V2.0: 3.5 LOW |
| CVE-2013-6906 |
Cross-site scripting (XSS) vulnerability in a mail component in Cybozu Garoon before 3.7.0, when Internet Explorer 6 through 8 is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. Published: December 05, 2013; 7:55:37 AM -0500 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
| CVE-2013-3917 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3915. Published: November 12, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-3915 |
Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3917. Published: November 12, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-3910 |
Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." Published: November 12, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-3909 |
Microsoft Internet Explorer 6 through 8 allows remote attackers to read content from a different (1) domain or (2) zone via crafted characters in Cascading Style Sheets (CSS) token sequences, aka "Internet Explorer Information Disclosure Vulnerability." Published: November 12, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
| CVE-2013-3908 |
Microsoft Internet Explorer 6 through 10 allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information from any visited document via a crafted web page that is not properly handled during a print-preview action, aka "Internet Explorer Information Disclosure Vulnerability." Published: November 12, 2013; 7:55:03 PM -0500 |
V3.x:(not available) V2.0: 4.3 MEDIUM |
| CVE-2013-3897 |
Use-after-free vulnerability in the CDisplayPointer class in mshtml.dll in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted JavaScript code that uses the onpropertychange event handler, as exploited in the wild in September and October 2013, aka "Internet Explorer Memory Corruption Vulnerability." Published: October 09, 2013; 10:54:25 AM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |
| CVE-2013-3871 |
Microsoft Internet Explorer 6 through 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." Published: October 09, 2013; 10:53:24 AM -0400 |
V3.x:(not available) V2.0: 9.3 HIGH |