7.5
CVE-2006-4494
- EPSS 22.11%
- Veröffentlicht 31.08.2006 22:04:00
- Zuletzt bearbeitet 16.06.2026 22:29:12
- Erkennungen
Microsoft Visual Studio 6.0 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code by instantiating certain Visual Studio 6.0 ActiveX COM Objects in Internet Explorer, including (1) tcprops.dll, (2) fp30wec.dll, (3) mdt2db.dll, (4) mdt2qd.dll, and (5) vi30aut.dll.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Visual Studio Version 6.0
Microsoft ≫ Visual Studio Version 6.0 Update sp1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 22.11% | 0.974 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://securityreason.com/securityalert/1473
http://www.securityfocus.com/archive/1/443499/100/100/threaded
http://www.securityfocus.com/bid/19572
http://www.xsec.org/index.php?module=releases&act=view&type=1&id=15