PT-2002-2436 · Microsoft · Internet Explorer
Publicado
2002-12-31
·
Atualizado
2021-07-23
·
CVE-2002-1714
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 5.0 through 6.0
Description
The issue allows remote attackers to cause a denial of service, resulting in a crash. This is achieved by using an object of type "text/html" with the DATA field that identifies the HTML document containing the object, potentially leading to infinite recursion.
Recommendations
For Microsoft Internet Explorer versions 5.0 through 6.0, consider disabling the rendering of "text/html" objects with the DATA field as a temporary workaround until a patch is available.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Internet Explorer