5
CVSSv2

CVE-2006-3471

Published: 10/07/2006 Updated: 20/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Microsoft Internet Explorer 6 on Windows XP allows remote malicious users to cause a denial of service (crash) via a table with a frameset as a child, which triggers a null dereference, as demonstrated using the appendChild method.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft ie 6.0

Exploits

<!-- browserfunblogspotcom/ The following bug was tested on the latest version of Internet Explorer 6 on a fully-patched Windows XP SP2 system This bug was found by Aviv Raff using the DOM-Hanoi fuzzer script DOM-Hanoi works by building trees of every combination of elements up to the specifed depth An alternate PoC could use pl ...