← All CVEs

CVE-2006-7031

medium · 6.5

Microsoft Internet Explorer 6.0.2900 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a table element with a CSS attribute that sets the position, which triggers an "unhandled exception" in mshtml.dll.

6.5
CVSS
17.5%
EPSS (exploit prob.)
97th
EPSS percentile
2007-02-23
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Affected products

VendorProductAffected versions
microsoftwindows_2000all versions
microsoftwindows_2003_serverall versions
microsoftwindows_2003_servergold
microsoftwindows_2003_serverr2
microsoftwindows_2003_serversp2
microsoftwindows_95all versions
microsoftwindows_98all versions
microsoftwindows_embedded_compactall versions
microsoftwindows_meall versions
microsoftwindows_ntall versions
microsoftwindows_vistaall versions
microsoftwindows_xpall versions
microsoftinternet_explorer<= 6.0.2900

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-7031