PT-2010-2535 · Microsoft · Internet Explorer

Published

2010-01-14

·

Updated

2026-05-21

·

CVE-2010-0806

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer versions 6 through 7
Description The issue is a use-after-free vulnerability in the Peer Objects component, which allows remote attackers to execute arbitrary code via vectors involving access to an invalid pointer after the deletion of an object. This issue has been exploited in the wild in March 2010.
Recommendations For Microsoft Internet Explorer versions 6 through 7, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

RCE

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2026-07707
CVE-2010-0806

Affected Products

Internet Explorer