10
CVSSv2

CVE-2006-1190

Published: 11/04/2006 Updated: 23/07/2021
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Internet Explorer 5.01 through 6 does not always return the correct IOleClientSite information when dynamically creating an embedded object, which could cause Internet Explorer to run the object in the wrong security context or zone, and allow remote malicious users to execute arbitrary code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5.01

microsoft internet explorer 5.1

microsoft internet explorer 5.5

microsoft internet explorer 6.0

Exploits

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 10 Transitional//EN" "wwww3org/TR/xhtml1/DTD/xhtml1-transitionaldtd"> <html> <fieldset> <h4> <pre><td> <menu> <legend> <a> <ul> <small> <fieldset> <h6> </h6 ></u> </optgroup> </tr> & ...