HIGH
Buffer overflow in mshtml.dll in Microsoft Internet Explorer 6.0.2900.2180, and probably other versions, allows remote attackers to execute arbitrary code via an HTML tag with a large number of script action handlers such as onload and onmouseover, as demonstrated using onclick, aka the "Multiple Event Handler Memory Corruption Vulnerability."
Published Mar 17, 2006
7.5
HIGHCVSS 2.0
EPSS 61.82%
Description
Buffer overflow in mshtml.dll in Microsoft Internet Explorer 6.0.2900.2180, and probably other versions, allows remote attackers to execute arbitrary code via an HTML tag with a large number of script action handlers such as onload and onmouseover, as demonstrated using onclick, aka the "Multiple Event Handler Memory Corruption Vulnerability."
Affected products
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (20)
- http://archives.neohapsis.com/archives/bugtraq/2006-02/0855.html mailing-listx_refsource_BUGTRAQ
- http://secunia.com/advisories/18957 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/19269 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://securitytracker.com/id?1015794 vdb-entryx_refsource_SECTRACKPatch
- http://www.kb.cert.org/vuls/id/984473 third-party-advisoryx_refsource_CERT-VNThird Party AdvisoryUS Government Resource
- http://www.osvdb.org/23964 vdb-entryx_refsource_OSVDBExploit
- http://www.securityfocus.com/archive/1/428810/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/453436/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/453554/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/17131 vdb-entryx_refsource_BIDExploitPatch
- http://www.us-cert.gov/cas/techalerts/TA06-101A.html third-party-advisoryx_refsource_CERTThird Party AdvisoryUS Government Resource
- http://www.vupen.com/english/advisories/2006/1318 vdb-entryx_refsource_VUPEN
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-013 vendor-advisoryx_refsource_MS
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2006-1249 Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25292 vdb-entryx_refsource_XF
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1451 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1569 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1599 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1632 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1766 vdb-entrysignaturex_refsource_OVAL
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner microsoft
Published Mar 17, 2006
Updated Aug 7, 2024
Reserved Mar 17, 2006
Link CVE-2006-1245
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2006-1249 Assigner microsoft
Published Mar 17, 2006
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2006-1249