Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Amesianx

#51412of 53,612
4.3Total CVSS
Vulnerabilities · 1
PT-2007-2255
4.3
2007-02-07
Microsoft · Windows 2000 · CVE-2007-0811
Name of the Vulnerable Software and Affected Versions: Microsoft Internet Explorer version 6.0 SP1 on Windows 2000 Microsoft Internet Explorer version 6.0 SP2 on Windows XP Description: The issue allows remote attackers to cause a denial of service, resulting in a NULL pointer dereference and application crash. This can be achieved via an HTML document containing a certain JavaScript for loop with an empty loop body, possibly involving `getElementById`. Recommendations: For Microsoft Internet Explorer version 6.0 SP1 on Windows 2000, consider applying a configuration change to restrict the execution of JavaScript code. For Microsoft Internet Explorer version 6.0 SP2 on Windows XP, consider applying a configuration change to restrict the execution of JavaScript code.