{"api_version":"1","generated_at":"2026-07-23T08:54:12+00:00","cve":"CVE-2006-3357","urls":{"html":"https://cve.report/CVE-2006-3357","api":"https://cve.report/api/cve/CVE-2006-3357.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-3357","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-3357"},"summary":{"title":"CVE-2006-3357","description":"Heap-based buffer overflow in HTML Help ActiveX control (hhctrl.ocx) in Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code by repeatedly setting the Image field of an Internet.HHCtrl.1 object to certain values, possibly related to improper escaping and long strings.","state":"PUBLIC","assigner":"cve@mitre.org","published_at":"2006-07-06 20:05:00","updated_at":"2021-07-23 12:55:00"},"problem_types":["NVD-CWE-Other"],"metrics":[],"references":[{"url":"http://securitytracker.com/id?1016434","name":"1016434","refsource":"SECTRACK","tags":[],"title":"SecurityTracker.com Archives - Microsoft HTML Help Heap Overflow in HHCtrl ActiveX Control May Let Remote Users Execute Arbitrary Code","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2006/2635","name":"ADV-2006-2635","refsource":"VUPEN","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/18769","name":"18769","refsource":"BID","tags":["Exploit"],"title":"Microsoft Windows HTML Help HHCtrl ActiveX Control Memory Corruption Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2006/2634","name":"ADV-2006-2634","refsource":"VUPEN","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/20906","name":"20906","refsource":"SECUNIA","tags":["Vendor Advisory"],"title":"Windows HTML Help ActiveX Control Memory Corruption - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/27573","name":"ie-hhctrl-bo(27573)","refsource":"XF","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://browserfun.blogspot.com/2006/07/mobb-2-internethhctrl-image-property.html","name":"http://browserfun.blogspot.com/2006/07/mobb-2-internethhctrl-image-property.html","refsource":"MISC","tags":[],"title":"Browser Fun: MoBB #2: Internet.HHCtrl Image Property","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/159220","name":"VU#159220","refsource":"CERT-VN","tags":["US Government Resource"],"title":"US-CERT Vulnerability Note VU#159220","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-046","name":"MS06-046","refsource":"MS","tags":[],"title":"Microsoft Security Bulletin MS06-046 - Critical | Microsoft Docs","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA06-220A.html","name":"TA06-220A","refsource":"CERT","tags":["US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA06-220A -- Microsoft Products Contain Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13","name":"oval:org.mitre.oval:def:13","refsource":"OVAL","tags":[],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/26835","name":"26835","refsource":"OSVDB","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.tippingpoint.com/security/advisories/TSRT-06-08.html","name":"http://www.tippingpoint.com/security/advisories/TSRT-06-08.html","refsource":"MISC","tags":[],"title":"Intrusion Prevention IPS | TippingPoint, a division of 3Com | Published Advisories","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/442733/100/0/threaded","name":"20060808 TSRT-06-08: Microsoft Internet Help COM Object Memory Corruption Vulnerability","refsource":"BUGTRAQ","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-3357","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-3357","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"3357","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"microsoft","cpe5":"ie","cpe6":"6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3357","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"microsoft","cpe5":"ie","cpe6":"6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"3357","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"microsoft","cpe5":"internet_explorer","cpe6":"6.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-3357","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Heap-based buffer overflow in HTML Help ActiveX control (hhctrl.ocx) in Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code by repeatedly setting the Image field of an Internet.HHCtrl.1 object to certain values, possibly related to improper escaping and long strings."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1016434","refsource":"SECTRACK","url":"http://securitytracker.com/id?1016434"},{"name":"MS06-046","refsource":"MS","url":"https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-046"},{"name":"VU#159220","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/159220"},{"name":"ADV-2006-2634","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/2634"},{"name":"ie-hhctrl-bo(27573)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/27573"},{"name":"20060808 TSRT-06-08: Microsoft Internet Help COM Object Memory Corruption Vulnerability","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/442733/100/0/threaded"},{"name":"oval:org.mitre.oval:def:13","refsource":"OVAL","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13"},{"name":"26835","refsource":"OSVDB","url":"http://www.osvdb.org/26835"},{"name":"ADV-2006-2635","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2006/2635"},{"name":"TA06-220A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA06-220A.html"},{"name":"http://www.tippingpoint.com/security/advisories/TSRT-06-08.html","refsource":"MISC","url":"http://www.tippingpoint.com/security/advisories/TSRT-06-08.html"},{"name":"20906","refsource":"SECUNIA","url":"http://secunia.com/advisories/20906"},{"name":"http://browserfun.blogspot.com/2006/07/mobb-2-internethhctrl-image-property.html","refsource":"MISC","url":"http://browserfun.blogspot.com/2006/07/mobb-2-internethhctrl-image-property.html"},{"name":"18769","refsource":"BID","url":"http://www.securityfocus.com/bid/18769"}]}},"nvd":{"publishedDate":"2006-07-06 20:05:00","lastModifiedDate":"2021-07-23 12:55:00","problem_types":["NVD-CWE-Other"],"metrics":{"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL","baseScore":7.5},"severity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"obtainAllPrivilege":false,"obtainUserPrivilege":true,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"3357","Ordinal":"18682","Title":"CVE-2006-3357","CVE":"CVE-2006-3357","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"3357","Ordinal":"1","NoteData":"Heap-based buffer overflow in HTML Help ActiveX control (hhctrl.ocx) in Microsoft Internet Explorer 6.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code by repeatedly setting the Image field of an Internet.HHCtrl.1 object to certain values, possibly related to improper escaping and long strings.","Type":"Description","Title":null},{"CveYear":"2006","CveId":"3357","Ordinal":"2","NoteData":"2006-07-06","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"3357","Ordinal":"3","NoteData":"2018-10-18","Type":"Other","Title":"Modified"}]}}}