5
CVSSv2

CVE-2005-4717

Published: 31/12/2005 Updated: 23/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Microsoft Internet Explorer 6.0 on Windows NT 4.0 SP6a, Windows 2000 SP4, Windows XP SP1, Windows XP SP2, and Windows Server 2003 SP1 allows remote malicious users to cause a denial of service (client crash) via a certain combination of a malformed HTML file and a CSS file that triggers a null dereference, probably related to rendering of a DIV element that contains a malformed IMG tag, as demonstrated by IEcrash.htm and IEcrash.rar.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 6.0

microsoft ie 6.0

microsoft windows xp

microsoft windows 2000

microsoft windows nt 4.0

microsoft windows 2003 server sp1

Exploits

source: wwwsecurityfocuscom/bid/15268/info Microsoft Internet Explorer is affected by a denial of service vulnerability This issue arises because the application fails to properly parse certain malformed HTML content An attacker may exploit this issue by enticing a user to visit a malicious site resulting in a denial of service conditi ...