PT-2010-2535 · Microsoft · Internet Explorer
Published
2010-01-14
·
Updated
2026-05-21
·
CVE-2010-0806
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 6 through 7
Description
The issue is a use-after-free vulnerability in the Peer Objects component, which allows remote attackers to execute arbitrary code via vectors involving access to an invalid pointer after the deletion of an object. This issue has been exploited in the wild in March 2010.
Recommendations
For Microsoft Internet Explorer versions 6 through 7, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
DoS
RCE
Use After Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer