Page 3 of 24 results (0.006 seconds)

CVSS: 7.5EPSS: 1%CPEs: 9EXPL: 0

18 Feb 2000 — The Microsoft virtual machine (VM) in Internet Explorer 4.x and 5.x allows a remote attacker to read files via a malicious Java applet that escapes the Java sandbox, aka the "VM File Reading" vulnerability. • https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-011 •

CVSS: 9.8EPSS: 7%CPEs: 3EXPL: 1

06 Dec 1999 — Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the vnd.ms.radio protocol. • https://www.exploit-db.com/exploits/19665 •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

29 Nov 1999 — Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ246972 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 8.8EPSS: 8%CPEs: 20EXPL: 1

11 Nov 1999 — A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability. • https://www.exploit-db.com/exploits/19603 •