2.6
CVE-2006-3729
- EPSS 20.65%
- Veröffentlicht 21.07.2006 14:03:00
- Zuletzt bearbeitet 16.06.2026 22:27:40
- Erkennungen
DataSourceControl in Internet Explorer 6 on Windows XP SP2 with Office installed allows remote attackers to cause a denial of service (crash) via a large negative integer argument to the getDataMemberName method of a OWC11.DataSourceControl.11 object, which leads to an integer overflow and a null dereference.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version 6.0
Microsoft ≫ Internet Explorer Version 6.0 Update sp1
Microsoft ≫ Internet Explorer Version 6.0 Update sp2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 20.65% | 0.972 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 2.6 | 4.9 | 2.9 |
AV:N/AC:H/Au:N/C:N/I:N/A:P
|
http://browserfun.blogspot.com/2006/07/mobb-19-datasourcecontrol.html
http://www.osvdb.org/27111
http://www.securityfocus.com/bid/19069
http://www.vupen.com/english/advisories/2006/2883
https://exchange.xforce.ibmcloud.com/vulnerabilities/27803