PT-2007-1172 · Microsoft · Internet Explorer

Published

2007-02-13

·

Updated

2021-07-23

·

CVE-2006-4697

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Microsoft Internet Explorer versions 5.01, 6, and 7
Description: A remote code execution issue exists due to the instantiation of certain COM objects in Internet Explorer. This could allow an attacker to execute arbitrary code via a specially crafted web page, potentially giving them complete control of an affected system.
Recommendations: For Microsoft Internet Explorer versions 5.01, 6, and 7, consider restricting access to web pages that could potentially exploit this issue until a fix is available. As a temporary workaround, avoid using Internet Explorer to view untrusted web pages. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-4697

Affected Products

Internet Explorer