Microsoft Internet Explorer 5.01 SP4,6到SP1,以及7版本存在使用已释放数据(Use-after-free)漏洞。远程攻击者借助一个特制的数据流,执行任意代码。该数据流会触发内存破坏。比如使用一个不具有注册的处理程序的无效的MIME-type。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-1617 | Interwoven WorkSite Web TransferCtrl Class控件双重释放漏洞 | |
| CVE-2008-1699 | CMS 'permalink.php' SQL注入漏洞 | |
| CVE-2008-1698 | Simple_gallery gallery.php 跨站脚本攻击漏洞 | |
| CVE-2008-1697 | HP OpenView网络节点管理器OVAS.EXE远程栈溢出漏洞 | |
| CVE-2008-1696 | DaZPHPNews 'makepost.php' 目录遍历漏洞 | |
| CVE-2008-0313 | Symantec Norton SymAData.ActiveDataInfo.1 ActiveX 控件代码执行漏洞 | |
| CVE-2008-0312 | Symantec AutoFix支持工具SYMADATA.DLL控件多个安全漏洞 | |
| CVE-2008-1702 | e107 My_Gallery 插件 'dload.php' 路径遍历漏洞 | |
| CVE-2008-1701 | Novell NetWare 拒绝服务漏洞 | |
| CVE-2008-1700 | WorkSite Web 拒绝服务漏洞 | |
| CVE-2008-1686 | FishSound库 远程Speex 解码代码执行漏洞 | |
| CVE-2008-0083 | Microsoft VBScript和JScript脚本引擎远程溢出漏洞(MS08-022) | |
| CVE-2008-0711 | HP iLO-2 Management Processors 拒绝服务漏洞 | |
| CVE-2008-1090 | Microsoft Visio Memory Validation 内存验证漏洞 | |
| CVE-2008-1089 | Microsoft Visio Object Header 未明漏洞 | |
| CVE-2008-1088 | Microsoft Project资源内存分配远程代码执行漏洞(MS08-018) | |
| CVE-2008-1087 | Microsoft Windows GDI 'EMR_COLORMATCHTOTARGETW' 栈溢出漏洞 | |
| CVE-2008-1086 | Microsoft Internet Explorer 代码注入漏洞 | |
| CVE-2008-1084 | Microsoft Windows内核用户态回调本地权限提升漏洞(MS08-025) | |
| CVE-2008-1083 | Microsoft Windows GDI 'CreateDIBPatternBrushPt' Function 堆溢出漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet