CVE-2006-1359

Description

Microsoft Internet Explorer 6 and 7 Beta 2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a certain createTextRange call on a checkbox object, which results in a dereference of an invalid table pointer.

Risk Information

Base Score
9.6
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:F/RL:O/RC:C
EPSS Score
Exploitation Probability
87.602

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Update for Internet Explorer 5.01 Service Pack 4 (KB912812)Windows
Cumulative Update for Internet Explorer 6 SP1 (KB912812)Windows
Cumulative Update for Internet Explorer for Windows XP Service Pack 2 (KB912812)Windows
Cumulative Update for Internet Explorer for Windows Server 2003 (KB912812) x86 based systemsWindows
Cumulative Update for Internet Explorer for Windows Server 2003 (KB912812) x86 based systems for SP1Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1317Cumulative Update for Internet Explorer for Windows Server 2003 (KB912812)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234