5.1
CVSSv2

CVE-2006-2094

Published: 29/04/2006 Updated: 23/07/2021
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Microsoft Internet Explorer before Windows XP Service Pack 2 and Windows Server 2003 Service Pack 1, when Prompt is configured in Security Settings, uses modal dialogs to verify that a user wishes to run an ActiveX control or perform other risky actions, which allows user-assisted remote malicious users to construct a race condition that tricks a user into clicking an object or pressing keys that are actually applied to a "Yes" approval for executing the control.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft ie 5.0.1

microsoft ie 5.0

microsoft internet explorer 5.5

microsoft ie 6.0

microsoft internet explorer 7.0

microsoft internet explorer 5.0.1

microsoft internet explorer 6.0

microsoft internet explorer 5.0

microsoft ie 5

Exploits

source: wwwsecurityfocuscom/bid/17713/info Internet Explorer is prone to a remote code-execution vulnerability through exploiting a race-condition when displaying modal security dialog boxes This issue may be exploited to cause users to inadvertently allow remote-code to be executed <HEAD> <TITLE>Internet Explorer ActiveX ...