PT-2006-6291 · Microsoft · Internet Explorer
Sam Thomas
·
Publicado
2006-12-12
·
Atualizado
2021-07-23
·
CVE-2006-5581
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Microsoft Internet Explorer version 6
Description:
The issue allows remote attackers to execute arbitrary code via certain DHTML script functions, such as
normalize, and "incorrectly created elements" that trigger memory corruption. A remote code execution vulnerability exists in the way Internet Explorer interprets certain DHTML script function calls to incorrectly created elements. An attacker could exploit the issue by constructing a specially crafted Web page that could potentially allow remote code execution if a user viewed the Web page. An attacker who successfully exploited this issue could take complete control of an affected system.Recommendations:
For Microsoft Internet Explorer version 6, there is no information about a newer version that contains a fix for this issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Internet Explorer