CVE-2006-1245
Buffer overflow in mshtml.dll in Microsoft Internet Explorer 6.0.2900.2180, and probably other versions, allows remote attackers to execute arbitrary code via an HTML tag with a large number of script action handlers such as onload and onmouseover, as demonstrated using onclick, aka the "Multiple Event Handler Memory Corruption Vulnerability."
- Affected products
- Internet Explorer
- Microsoft Ie
- = 6.0
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 61.8% (99th percentile)
- NVD status
- Modified
- Published
- 2006-03-17
CVE-2006-1245 at NVD
2 known exploits for CVE-2006-1245
Proof-of-concept code and exploit modules indexed by Sploitus