Secunia Logo
 
CVE Reference: CVE-2006-0057
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0057

Description:
Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to bypass the Kill bit settings for dangerous ActiveX controls via unknown vectors involving crafted HTML, which can expose the browser to attacks that would otherwise be prevented by the Kill bit setting. NOTE: CERT/CC claims that MS05-054 fixes this issue, but it is not described in MS05-054.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/24379

OSVDB
  23657

MISC
  http://www.microsoft.com/technet/security/bulletin/ms05-054.mspx

CERT-VN
  998297

BID
  16409


Return to the previous page.