7.5

CVE-2006-4495

Microsoft Internet Explorer allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code by instantiating certain Windows 2000 ActiveX COM Objects including (1) ciodm.dll, (2) myinfo.dll, (3) msdxm.ocx, and (4) creator.dll.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftIe Version6.0 Updatesp1
MicrosoftWindows 2003 Server Version2000_server
MicrosoftWindows 2003 Server Version2000_server Updatesp1
MicrosoftWindows 2003 Server Version2000_server Updatesp2
MicrosoftWindows 2003 Server Version2000_server Updatesp3
MicrosoftWindows 2003 Server Version2000_server Updatesp4
MicrosoftWindows 2003 Server Versionadvanced_server
MicrosoftWindows 2003 Server Versionadvanced_server Updatesp1
MicrosoftWindows 2003 Server Versionadvanced_server Updatesp2
MicrosoftWindows 2003 Server Versionadvanced_server Updatesp3
MicrosoftWindows 2003 Server Versionadvanced_server Updatesp4
MicrosoftWindows 2003 Server Versiondatacenter_server
MicrosoftWindows 2003 Server Versiondatacenter_server Updatesp1
MicrosoftWindows 2003 Server Versiondatacenter_server Updatesp2
MicrosoftWindows 2003 Server Versiondatacenter_server Updatesp3
MicrosoftWindows 2003 Server Versiondatacenter_server Updatesp4
MicrosoftWindows 2003 Server Versionprofessional
MicrosoftWindows 2003 Server Versionprofessional Updatesp1
MicrosoftWindows 2003 Server Versionprofessional Updatesp2
MicrosoftWindows 2003 Server Versionprofessional Updatesp3
MicrosoftWindows 2003 Server Versionprofessional Updatesp4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 54.57% 0.978
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P