Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2006-2218 | First vendor Publication | 2006-05-05 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9.3 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2218 |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:1078 | |||
Oval ID: | oval:org.mitre.oval:def:1078 | ||
Title: | Exception Handling Memory Corruption Vulnerability (S03,SP1) | ||
Description: | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2006-2218 | Version: | 4 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | Microsoft Internet Explorer |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1728 | |||
Oval ID: | oval:org.mitre.oval:def:1728 | ||
Title: | Exception Handling Memory Corruption Vulnerability (WinS03) | ||
Description: | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2006-2218 | Version: | 5 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | Microsoft Internet Explorer |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1765 | |||
Oval ID: | oval:org.mitre.oval:def:1765 | ||
Title: | Exception Handling Memory Corruption Vulnerability (2K/XP) | ||
Description: | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2006-2218 | Version: | 7 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP | Product(s): | Microsoft Internet Explorer |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1768 | |||
Oval ID: | oval:org.mitre.oval:def:1768 | ||
Title: | Exception Handling Memory Corruption Vulnerability (XP,SP2) | ||
Description: | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2006-2218 | Version: | 5 |
Platform(s): | Microsoft Windows XP | Product(s): | Microsoft Internet Explorer |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1845 | |||
Oval ID: | oval:org.mitre.oval:def:1845 | ||
Title: | Exception Handling Memory Corruption Vulnerability (Win2k) | ||
Description: | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2006-2218 | Version: | 8 |
Platform(s): | Microsoft Windows 2000 | Product(s): | Microsoft Internet Explorer |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1961 | |||
Oval ID: | oval:org.mitre.oval:def:1961 | ||
Title: | Exception Handling Memory Corruption Vulnerability(64-bit XP) | ||
Description: | Unspecified vulnerability in Internet Explorer 6.0 on Microsoft Windows XP SP2 allows remote attackers to execute arbitrary code via "exceptional conditions" that trigger memory corruption, as demonstrated using an exception handler and nested object tags, a variant of CVE-2006-1992. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2006-2218 | Version: | 4 |
Platform(s): | Microsoft Windows XP | Product(s): | Microsoft Internet Explorer |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 1 |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
27475 | Microsoft IE Nested Objects Exception Handler Unspecified Memory Corruption Internet Explorer contains a flaw that may allow a malicious user to execute arbitrary code. This issue is caused by a memory corruption error within the handling of certain "exceptional conditions". The error occurs in mshtml.dll when the browser encounters a set of nested OBJECT tags which triggers a NULL dereference. |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.MMSpecialEffect1Input ... RuleID : 6687 - Revision : 15 - Type : BROWSER-PLUGINS |
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.MMSpecialEffect2Inputs... RuleID : 6686 - Revision : 17 - Type : BROWSER-PLUGINS |
2014-01-10 | DXImageTransform.Microsoft.MMSpecialEffect2Inputs ActiveX CLSID unicode access RuleID : 6685 - Revision : 6 - Type : WEB-ACTIVEX |
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.MMSpecialEffectInplace... RuleID : 6684 - Revision : 17 - Type : BROWSER-PLUGINS |
2014-01-10 | DXImageTransform.Microsoft.MMSpecialEffect1Input ActiveX CLSID unicode access RuleID : 6683 - Revision : 6 - Type : WEB-ACTIVEX |
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.MMSpecialEffect2Inputs... RuleID : 6682 - Revision : 15 - Type : BROWSER-PLUGINS |
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.MMSpecialEffect1Input ... RuleID : 6681 - Revision : 17 - Type : BROWSER-PLUGINS |
2014-01-10 | Windows Media Transform Effects ActiveX CLSID unicode access RuleID : 6680 - Revision : 6 - Type : WEB-ACTIVEX |
2014-01-10 | DXImageTransform.Microsoft.Light ActiveX function call access RuleID : 6519 - Revision : 4 - Type : WEB-CLIENT |
2014-01-10 | DXImageTransform.Microsoft.Light ActiveX CLSID unicode access RuleID : 6518 - Revision : 6 - Type : WEB-ACTIVEX |
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.Light ActiveX clsid ac... RuleID : 6517 - Revision : 13 - Type : BROWSER-PLUGINS |
2014-01-10 | Microsoft Internet Explorer DXImageTransform.Microsoft.Light ActiveX function... RuleID : 6516 - Revision : 11 - Type : BROWSER-PLUGINS |
2014-01-23 | Microsoft Internet Explorer DXImageTransform.Microsoft.MMSpecialEffectInplace... RuleID : 29037 - Revision : 3 - Type : BROWSER-PLUGINS |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2006-06-13 | Name : Arbitrary code can be executed on the remote host through the web client. File : smb_nt_ms06-021.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:20:33 |
|
2024-11-28 12:08:53 |
|
2021-07-27 00:24:36 |
|
2021-07-24 01:44:13 |
|
2021-07-24 01:02:33 |
|
2021-07-23 17:24:40 |
|
2020-05-23 00:17:45 |
|
2018-10-18 21:20:07 |
|
2018-10-13 00:22:34 |
|
2017-10-11 09:23:40 |
|
2016-06-28 15:46:03 |
|
2016-04-26 14:35:40 |
|
2014-02-17 10:35:44 |
|
2013-05-11 10:56:31 |
|