CVE-2006-3427

Microsoft Internet Explorer 6 - DoS

Title source: llm

Description

Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by declaring the sourceURL attribute on an uninitialized DirectAnimation.StructuredGraphicsControl ActiveX Object, which triggers a null dereference.

Exploits (1)

exploitdb WORKING POC VERIFIED
by hdm · htmldoswindows
https://www.exploit-db.com/exploits/28169

Scores

EPSS 0.2198
EPSS Percentile 95.8%

Details

Status published
Products (1)
microsoft/internet_explorer 6.0 (3 CPE variants)
Published Jul 07, 2006
Tracked Since Feb 18, 2026