CVE-2010-2118

Microsoft Internet Explorer 6.0.2900.2180 and 8.0.7600.16385 - Denial of Service via Infinite Loop with IFRAME Elements

Title source: llm
STIX 2.1

Description

Microsoft Internet Explorer 6.0.2900.2180 and 8.0.7600.16385 allows remote attackers to cause a denial of service (resource consumption) via JavaScript code containing an infinite loop that creates IFRAME elements for invalid news:// URIs.

References (2)

Core 2
Core References
Exploit x_refsource_misc
http://websecurity.com.ua/4238/
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/511509/100/0/threaded

Scores

EPSS 0.1006
EPSS Percentile 95.2%

Details

CWE
CWE-399
Status published
Products (2)
microsoft/ie 8.0.7600.16385
microsoft/internet_explorer 6.0.2900.2180
Published Jun 01, 2010
Tracked Since Feb 18, 2026