Vulnerabilities > Microsoft > IE > 7.0

DATE CVE VULNERABILITY TITLE RISK
2006-10-26 CVE-2006-5544 Unspecified vulnerability in Microsoft IE 7.0
Visual truncation vulnerability in Microsoft Internet Explorer 7 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a malicious URL containing non-breaking spaces (%A0), which causes the address bar to omit some characters from the URL.
network
low complexity
microsoft
6.4
2006-03-23 CVE-2006-1359 Code Injection vulnerability in Microsoft IE and Internet Explorer
Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain createTextRange call on a checkbox object, which results in a dereference of an invalid table pointer.
network
microsoft CWE-94
critical
9.3
2006-02-04 CVE-2006-0544 Denial Of Service vulnerability in Microsoft IE 7.0
urlmon.dll in Microsoft Internet Explorer 7.0 beta 2 (aka 7.0.5296.0) allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a BGSOUND element with its SRC attribute set to "file://" followed by a large number of "-" (dash of hyphen) characters.
network
low complexity
microsoft
7.5
2004-12-31 CVE-2004-1155 Unspecified vulnerability in Microsoft IE and Internet Explorer
Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one window into another window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.
network
low complexity
microsoft
7.5