CVE-2006-1190

Microsoft Internet Explorer <6 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-1190.

AI-analyzed exploit summary This is a proof-of-concept exploit for CVE-2006-1190, which targets a vulnerability in Internet Explorer. The exploit uses malformed HTML tags to trigger a memory corruption issue, potentially leading to arbitrary code execution.

Description

Microsoft Internet Explorer 5.01 through 6 does not always return the correct IOleClientSite information when dynamically creating an embedded object, which could cause Internet Explorer to run the object in the wrong security context or zone, and allow remote attackers to execute arbitrary code.

Exploits (1)

exploitdb WORKING POC
htmldoswindows
https://www.exploit-db.com/exploits/1838

This is a proof-of-concept exploit for CVE-2006-1190, which targets a vulnerability in Internet Explorer. The exploit uses malformed HTML tags to trigger a memory corruption issue, potentially leading to arbitrary code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Microsoft Internet Explorer
No auth needed
Prerequisites: Victim must visit a malicious webpage using a vulnerable version of Internet Explorer
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (11)

Core 11
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18957
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1735
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015900
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17455
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1541
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/25552
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/1318
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A965
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/959649
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1783

Scores

EPSS 0.7838
EPSS Percentile 99.1%

Details

Status published
Products (4)
microsoft/internet_explorer 5.01
microsoft/internet_explorer 5.1
microsoft/internet_explorer 5.5
microsoft/internet_explorer 6.0
Published Apr 11, 2006
Tracked Since Feb 18, 2026