CVE-2006-1359

CVSS V2 High 9.3 CVSS V3 None
Description
Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain createTextRange call on a checkbox object, which results in a dereference of an invalid table pointer.
Overview
  • CVE ID
  • CVE-2006-1359
  • Assigner
  • secure@microsoft.com
  • Vulnerability Status
  • Modified
  • Published Version
  • 2006-03-23T00:06:00
  • Last Modified Date
  • 2021-07-23T12:55:03
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:* 1 OR
cpe:2.3:a:microsoft:ie:6.0:sp2:*:*:*:*:*:* 1 OR
cpe:2.3:a:microsoft:ie:7.0:beta_2:*:*:*:*:*:* 1 OR
cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:* 1 OR
CVSS Version 2
  • Version
  • 2.0
  • Vector String
  • AV:N/AC:M/Au:N/C:C/I:C/A:C
  • Access Vector
  • NETWORK
  • Access Compatibility
  • MEDIUM
  • Authentication
  • NONE
  • Confidentiality Impact
  • COMPLETE
  • Integrity Impact
  • COMPLETE
  • Availability Impact
  • COMPLETE
  • Base Score
  • 9.3
  • Severity
  • HIGH
  • Exploitability Score
  • 8.6
  • Impact Score
  • 10
References
Reference URL Reference Tags
http://www.securityfocus.com/archive/1/428441
http://www.computerterrorism.com/research/ct22-03-2006 Vendor Advisory
http://www.securityfocus.com/bid/17196 Exploit
http://secunia.com/advisories/18680 Vendor Advisory
http://www.kb.cert.org/vuls/id/876678 US Government Resource
http://secunia.com/secunia_research/2006-7/advisory/
http://www.microsoft.com/technet/security/advisory/917077.mspx
http://www.osvdb.org/24050
http://securitytracker.com/id?1015812
http://www.us-cert.gov/cas/techalerts/TA06-101A.html US Government Resource
http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1434.html
http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1427.html
http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1430.html
http://archives.neohapsis.com/archives/fulldisclosure/2006-03/1662.html
http://www.ciac.org/ciac/bulletins/q-154.shtml
http://www.vupen.com/english/advisories/2006/1050
http://www.vupen.com/english/advisories/2006/1318
https://exchange.xforce.ibmcloud.com/vulnerabilities/25379
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A985
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1702
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1678
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1657
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1178
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-013
http://www.securityfocus.com/archive/1/429124/30/6120/threaded
http://www.securityfocus.com/archive/1/429088/100/0/threaded
http://www.securityfocus.com/archive/1/428600/100/0/threaded
http://www.securityfocus.com/archive/1/428583/100/0/threaded
History
Created Old Value New Value Data Type Notes
2022-05-10 15:54:00 Added to TrackCVE