5
CVSSv2

CVE-2006-4446

Published: 30/08/2006 Updated: 17/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Heap-based buffer overflow in DirectAnimation.PathControl COM object (daxctle.ocx) in Microsoft Internet Explorer 6.0 SP1 allows remote malicious users to cause a denial of service and possibly execute arbitrary code via a Spline function call whose first argument specifies a large number of points.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft ie 6.0

Exploits

source: wwwsecurityfocuscom/bid/19738/info Microsoft Internet Explorer is prone to a heap buffer-overflow vulnerability The vulnerability arises because of the way Internet Explorer tries to instantiate certain COM objects as ActiveX controls An attacker can exploit this issue to execute arbitrary code within context of the affecte ...