5

CVE-2006-3354

Exploit
Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the Filter property of an ADODB.Recordset ActiveX object to certain values multiple times, which triggers a null dereference.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Ie Version 6 Edition windows_xp_professional_64bit
Microsoft ≫ Ie Version 6 Update sp1 Edition windows_98
Microsoft ≫ Ie Version 6 Update sp1 Edition windows_98_se
Microsoft ≫ Ie Version 6 Update sp1 Edition windows_millennium
Microsoft ≫ Ie Version 6 Update sp1 Edition windows_xpsp1
Microsoft ≫ Ie Version 6 Update windows_2000_sp4
Microsoft ≫ Ie Version 6 Update windows_server_2003_sp1
Microsoft ≫ Ie Version 6 Update windows_server_2003_sp1_itanium
Microsoft ≫ Ie Version 6 Update windows_server_2003_sp1_itanium_systems
Microsoft ≫ Ie Version 6 Update windows_xp_sp2
Microsoft ≫ Ie Version 6.0 Edition windows_server_2003
Microsoft ≫ Ie Version 6.0 Update sp1
Microsoft ≫ Ie Version 6.0 Update sp2
Microsoft ≫ Ie Version 6.0 Update windows_xp_sp2
Microsoft ≫ Internet Explorer Version 6 Update sp1
Microsoft ≫ Internet Explorer Version 6.0
Microsoft ≫ Internet Explorer Version 6.0.2600
Microsoft ≫ Internet Explorer Version 6.0.2800
Microsoft ≫ Internet Explorer Version 6.0.2800.1106
Microsoft ≫ Internet Explorer Version 6.0.2900.2180
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 17.07% 0.967
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://browserfun.blogspot.com/2006/07/mobb-1-adodbrecordset-filter-property.html
Exploit
http://www.osvdb.org/26834
http://www.securityfocus.com/bid/18773
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/27596