CVE-2006-3450

Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using the document.getElementByID Javascript function to access crafted Cascading Style Sheet (CSS) elements, and possibly other unspecified vectors involving certain layout positioning combinations in an HTML file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:*

History

21 Nov 2024, 00:13

Type Values Removed Values Added
References () http://secunia.com/advisories/21396 - Vendor Advisory () http://secunia.com/advisories/21396 - Vendor Advisory
References () http://securitytracker.com/id?1016663 - () http://securitytracker.com/id?1016663 -
References () http://www.kb.cert.org/vuls/id/119180 - Patch, US Government Resource () http://www.kb.cert.org/vuls/id/119180 - Patch, US Government Resource
References () http://www.osvdb.org/27855 - () http://www.osvdb.org/27855 -
References () http://www.securityfocus.com/archive/1/442579/100/0/threaded - () http://www.securityfocus.com/archive/1/442579/100/0/threaded -
References () http://www.securityfocus.com/bid/19312 - Patch () http://www.securityfocus.com/bid/19312 - Patch
References () http://www.us-cert.gov/cas/techalerts/TA06-220A.html - Patch, Third Party Advisory, US Government Resource () http://www.us-cert.gov/cas/techalerts/TA06-220A.html - Patch, Third Party Advisory, US Government Resource
References () http://www.vupen.com/english/advisories/2006/3212 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/3212 - Vendor Advisory
References () http://www.zerodayinitiative.com/advisories/ZDI-06-027.html - () http://www.zerodayinitiative.com/advisories/ZDI-06-027.html -
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-042 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-042 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A433 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A433 -

Information

Published : 2006-08-08 23:04

Updated : 2024-11-21 00:13


NVD link : CVE-2006-3450

Mitre link : CVE-2006-3450

CVE.ORG link : CVE-2006-3450


JSON object : View

Products Affected

microsoft

  • internet_explorer
  • ie
CWE
CWE-20

Improper Input Validation