Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-4495

Опубликовано: 31 авг. 2006
Источник: nvd
CVSS2: 7.5
EPSS Средний

Описание

Microsoft Internet Explorer allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code by instantiating certain Windows 2000 ActiveX COM Objects including (1) ciodm.dll, (2) myinfo.dll, (3) msdxm.ocx, and (4) creator.dll.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:o:microsoft:windows_2003_server:2000_server:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:2000_server:sp1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:2000_server:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:2000_server:sp3:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:2000_server:sp4:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:advanced_server:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:advanced_server:sp1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:advanced_server:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:advanced_server:sp3:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:advanced_server:sp4:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:datacenter_server:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:datacenter_server:sp1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:datacenter_server:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:datacenter_server:sp3:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:datacenter_server:sp4:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:professional:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:professional:sp1:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:professional:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:professional:sp3:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2003_server:professional:sp4:*:*:*:*:*:*

EPSS

Процентиль: 98%
0.54991
Средний

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

Microsoft Internet Explorer allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code by instantiating certain Windows 2000 ActiveX COM Objects including (1) ciodm.dll, (2) myinfo.dll, (3) msdxm.ocx, and (4) creator.dll.

EPSS

Процентиль: 98%
0.54991
Средний

7.5 High

CVSS2

Дефекты

NVD-CWE-Other