CVE-2006-3450
Summary
| CVE | CVE-2006-3450 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-08 23:04:00 UTC |
| Updated | 2021-07-23 12:55:00 UTC |
| Description | Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using the document.getElementByID Javascript function to access crafted Cascading Style Sheet (CSS) elements, and possibly other unspecified vectors involving certain layout positioning combinations in an HTML file. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| US-CERT Vulnerability Note VU#119180 | CERT-VN | www.kb.cert.org | Patch, US Government Resource |
| Internet Explorer Multiple Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | Vendor Advisory |
| Microsoft Security Bulletin MS06-042 - Critical | Microsoft Docs | MS | docs.microsoft.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | Vendor Advisory |
| ZDI-06-027 | MISC | www.zerodayinitiative.com | |
| Microsoft Internet Explorer HTML Layout and Positioning Remote Code Execution Vulnerability | BID | www.securityfocus.com | Patch |
| US-CERT Technical Cyber Security Alert TA06-220A -- Microsoft Products Contain Multiple Vulnerabilities | CERT | www.us-cert.gov | Patch, Third Party Advisory, US Government Resource |
| Repository / Oval Repository | OVAL | oval.cisecurity.org | |
| SecurityTracker.com Archives - Microsoft Internet Explorer Bugs Let Remote Users Obtain Information or Execute Arbitrary Code | SECTRACK | securitytracker.com | |
| 27855 | OSVDB | www.osvdb.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.