Описание
Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with "::{" (colon colon left brace), which triggers a null dereference when the user attempts to save the link using "Save As" and Internet Explorer prepares an error message with an attacker-controlled format string.
Ссылки
- ExploitVendor Advisory
- ExploitVendor Advisory
- Exploit
- ExploitVendor Advisory
- ExploitVendor Advisory
- ExploitVendor Advisory
- Exploit
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:*
EPSS
Процентиль: 92%
0.08625
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (browser crash) via a link with "::{" (colon colon left brace), which triggers a null dereference when the user attempts to save the link using "Save As" and Internet Explorer prepares an error message with an attacker-controlled format string.
EPSS
Процентиль: 92%
0.08625
Низкий
5 Medium
CVSS2
Дефекты
NVD-CWE-Other