Page 84 of 840 results (0.009 seconds)

CVSS: 7.5EPSS: 3%CPEs: 2EXPL: 0

01 Oct 1998 — Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into the file upload control, aka untrusted scripted paste. • https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-015 •

CVSS: 6.5EPSS: 0%CPEs: 2EXPL: 0

04 Sep 1998 — Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security, aka the "Cross Frame Navigate" vulnerability. • http://www.osvdb.org/7837 •

CVSS: 7.5EPSS: 18%CPEs: 1EXPL: 0

28 Jul 1998 — Internet Explorer 4.0 allows remote attackers to cause a denial of service (crash) via HTML code that contains a long CLASSID parameter in an OBJECT tag. • http://marc.info/?l=bugtraq&m=90221104526169&w=2 •

CVSS: 8.2EPSS: 0%CPEs: 2EXPL: 0

01 Apr 1998 — A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc. • https://www.cve.org/CVERecord?id=CVE-1999-0537 •

CVSS: 9.8EPSS: 0%CPEs: 3EXPL: 0

01 Jan 1998 — Buffer overflow in Internet Explorer 4.0(1). • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0331 •

CVSS: 10.0EPSS: 0%CPEs: 3EXPL: 0

01 Nov 1997 — Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0967 •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

05 Aug 1997 — Internet Explorer 3 records a history of all URL's that are visited by a user in DAT files located in the Temporary Internet Files and History folders, which are not cleared when the user selects the "Clear History" option, and are not visible when the user browses the folders because of tailored displays. • http://marc.info/?l=ntbugtraq&m=87602837719654&w=2 •

CVSS: 4.3EPSS: 21%CPEs: 5EXPL: 0

08 Jul 1997 — JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability. • http://www.codetalker.com/advisories/vendor/hp/hpsbux9707-065.html •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

01 Apr 1997 — Remote command execution in Microsoft Internet Explorer using .lnk and .url files. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0280 •

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

01 Mar 1997 — Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user. • http://members.tripod.com/~unibyte/iebug3.htm •