Oval Definition:oval:org.mitre.oval:def:1569
Revision Date:2014-02-24Version:50
Title:IE6 Multiple Event Handler Memory Corruption (Win2K/XP,SP1)
Description:Buffer overflow in mshtml.dll in Microsoft Internet Explorer 6.0.2900.2180, and probably other versions, allows remote attackers to execute arbitrary code via an HTML tag with a large number of script action handlers such as onload and onmouseover, as demonstrated using onclick, aka the "Multiple Event Handler Memory Corruption Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2006-1245
Platform(s):Microsoft Windows 2000
Microsoft Windows XP
Product(s):Microsoft Internet Explorer
Definition Synopsis
  • Win2K or XP,SP1 is installed
  • Windows 2000 is installed
  • OR Windows XP 32-bit SP1 is installed
  • Windows XP 32-bit edition is installed
  • Windows XP is installed
  • AND 32-Bit version of Windows is installed
  • AND Win2K/XP/2003/Vista service pack 1 is installed
  • AND Internet Explorer 6 (any patch level) is installed
  • AND the version of mshtml.dll is less than 6.0.2800.1543
  • BACK