4
CVSSv2

CVE-2006-2900

Published: 07/06/2006 Updated: 11/10/2011
CVSS v2 Base Score: 4 | Impact Score: 4.9 | Exploitability Score: 4.9
VMScore: 356
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:N

Vulnerability Summary

Internet Explorer 6 allows user-assisted remote malicious users to read arbitrary files by tricking a user into typing the characters of the target filename in a text box and using the OnKeyDown, OnKeyPress, and OnKeyUp Javascript keystroke events to change the focus and cause those characters to be inserted into a file upload input control, which can then upload the file when the user submits the form.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft ie 6

canon network camera server vb101

microsoft ie 5.01