CVE-2006-4138

Microsoft Windows Help File viewer - RCE

Title source: llm
STIX 2.1

Description

Multiple unspecified vulnerabilities in Microsoft Windows Help File viewer (winhlp32.exe) allow user-assisted attackers to execute arbitrary code via crafted HLP files.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Benjamin Tobias Franz · textdoswindows
https://www.exploit-db.com/exploits/28381

References (4)

Core 4
Core References
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/1382
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/19490
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/443034/100/0/threaded
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/443039/100/0/threaded

Scores

EPSS 0.4548
EPSS Percentile 97.6%

Details

Status published
Products (1)
microsoft/help_file_viewer
Published Aug 14, 2006
Tracked Since Feb 18, 2026