CVE-2006-1245
HIGH 7.5EPSS 61.8%
Buffer overflow in mshtml.dll in Microsoft Internet Explorer 6.0.2900.2180, and probably other versions, allows remote attackers to execute arbitrary code via an HTML tag with a large number of script action handlers such as onload and onmouseover, as demonstrated using onclick, aka the "Multiple Event Handler Memory Corruption Vulnerability."
- CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 61.82% chance of exploitation in the next 30 days, 99th percentile
- Published
- 2006-03-17
- Updated
- 2024-08-07
Proof-of-concept exploits (3)
- http://www.securityfocus.com/archive/1/453554/100/0/threaded
- http://www.securityfocus.com/archive/1/428810/100/0/threaded
- http://www.securityfocus.com/archive/1/453436/100/0/threaded