PoC Index

CVE-2006-4777

HIGH 7.6EPSS 79.8%

Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) for Internet Explorer 6.0 SP1, on Chinese and possibly other Windows distributions, allows remote attackers to execute arbitrary code via unknown manipulations in arguments to the KeyFrame method, possibly related to an integer overflow, as demonstrated by daxctle2, and a different vulnerability than CVE-2006-4446.

CVSS v2.0
7.6 HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
EPSS
79.78% chance of exploitation in the next 30 days, 100th percentile
Published
2006-09-14
Updated
2024-08-07

Proof-of-concept exploits (2)

Metasploit modules (1)

ExploitDB entries (2)

References

Related