Page 8 of 46 results (0.005 seconds)

CVSS: 2.6EPSS: 0%CPEs: 3EXPL: 1

Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability. • https://www.exploit-db.com/exploits/20459 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-093 https://exchange.xforce.ibmcloud.com/vulnerabilities/5615 •

CVSS: 2.6EPSS: 0%CPEs: 6EXPL: 0

Internet Explorer 4.0 and 5.0 allows a malicious web site to obtain client cookies from another domain by including that domain name and escaped characters in a URL, aka the "Unauthorized Cookie Access" vulnerability. • http://www.osvdb.org/1326 http://www.securityfocus.com/bid/1194 http://www.securityfocus.com/templates/archive.pike?list=1&msg=20000511135609.D7774%40securityfocus.com http://www.securityfocus.com/templates/archive.pike?list=1&msg=NDBBKGHPMKBKDDGLDEEHAEHMDIAA.rms2000%40bellatlantic.net https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-033 https://exchange.xforce.ibmcloud.com/vulnerabilities/4447 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

Buffer overflow in Internet Explorer 4.01 and earlier allows remote attackers to execute arbitrary commands via a long URL with the "mk:" protocol, aka the "MK Overrun security issue." • http://marc.info/?l=bugtraq&m=88480839506155&w=2 http://support.microsoft.com/support/kb/articles/q176/6/97.asp https://exchange.xforce.ibmcloud.com/vulnerabilities/917 •

CVSS: 5.1EPSS: 0%CPEs: 3EXPL: 0

Buffer overflow in the Window.External function in the JScript Scripting Engine in Internet Explorer 4.01 SP1 and earlier allows remote attackers to execute arbitrary commands via a malicious web page. • http://support.microsoft.com/support/kb/articles/q191/2/00.asp http://www.iss.net/security_center/static/1276.php https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-011 •

CVSS: 5.0EPSS: 0%CPEs: 2EXPL: 0

When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authentication information to the second site, aka the "Page Redirect Issue." • http://support.microsoft.com/support/kb/articles/q176/6/97.asp http://www.iss.net/security_center/static/7426.php http://www.osvdb.org/7818 •