PT-2006-6290 · Microsoft · Internet Explorer
Carsten Eiram
+1
·
Published
2006-12-12
·
Updated
2021-07-23
·
CVE-2006-5579
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Microsoft Internet Explorer version 6
Description:
A remote code execution issue exists due to attempts to access previously freed memory when handling script errors in certain situations. An attacker could exploit this by constructing a specially crafted Web page. If a user viewed the Web page, it could allow remote code execution, potentially giving an attacker complete control of an affected system.
Recommendations:
For Microsoft Internet Explorer version 6, consider avoiding the use of JavaScript on untrusted web pages until a fix is available. As a temporary workaround, restrict access to web pages that may exploit this issue to minimize the risk of exploitation.
Fix
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Internet Explorer