Vulnerabilities > Microsoft > Internet Explorer > 5.0

DATE CVE VULNERABILITY TITLE RISK
2000-01-07 CVE-2000-0061 Unspecified vulnerability in Microsoft Internet Explorer
Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document is loading.
network
low complexity
microsoft
critical
10.0
1999-12-23 CVE-2000-0028 Unspecified vulnerability in Microsoft IE and Internet Explorer
Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function.
network
high complexity
microsoft
2.6
1999-11-17 CVE-1999-0793 Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0
Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.
network
high complexity
microsoft
2.6
1999-11-14 CVE-1999-1110 Unspecified vulnerability in Microsoft Internet Explorer 5.0
Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of files on the client.
network
low complexity
microsoft
5.0
1999-11-01 CVE-1999-0827 By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option, which allows frame spoofing.
network
high complexity
netscape microsoft
2.6
1999-11-01 CVE-1999-0354 Unspecified vulnerability in Microsoft Internet Explorer and Word
Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through the Word 97 template, which doesn't warn the user that the template contains executable content.
network
low complexity
microsoft
7.5
1999-10-31 CVE-1999-1577 Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0
Buffer overflow in HHOpen ActiveX control (hhopen.ocx) 1.0.0.1 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands via long arguments to the OpenHelp method.
network
high complexity
microsoft
5.1
1999-09-24 CVE-1999-1578 Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0
Buffer overflow in Registration Wizard ActiveX control (regwizc.dll, InvokeRegWizard) 3.0.0.0 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands.
network
high complexity
microsoft
5.1
1999-09-10 CVE-1999-1575 Unspecified vulnerability in Microsoft Internet Explorer 4.0.1/5.0
The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as "Safe for Scripting," which allows remote attackers to create and modify files and execute arbitrary commands.
network
high complexity
microsoft
5.1
1999-09-01 CVE-1999-0670 Unspecified vulnerability in Microsoft Internet Explorer 4.0/5.0
Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands.
network
high complexity
microsoft
4.0