5
CVSSv2

CVE-2006-7065

Published: 02/03/2007 Updated: 23/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Microsoft Internet Explorer allows remote malicious users to cause a denial of service (crash) via an IFRAME with a certain XML file and XSL stylesheet that triggers a crash in mshtml.dll when a refresh is called, probably a null pointer dereference.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft ie 6.0

microsoft ie 6

microsoft internet explorer 6.0

microsoft internet explorer 6.0.2600

microsoft internet explorer 6.0.2800

microsoft internet explorer 6

microsoft internet explorer 7.0

microsoft ie 7.0

microsoft ie 7

microsoft internet explorer 6.0.2900

canon network camera server vb101

microsoft internet explorer 6.0.2800.1106

microsoft internet explorer 6.0.2900.2180

Exploits

source: wwwsecurityfocuscom/bid/19364/info Microsoft Internet Explorer is prone to a denial-of-service vulnerability when handling malicious HTML files Successfully exploiting this issue allows attackers to consume excessive CPU resources in the affected browser and eventually cause Internet Explorer to crash, causing a denial-of-servi ...