← All CVEs

CVE-2006-7065

medium · 5

Microsoft Internet Explorer allows remote attackers to cause a denial of service (crash) via an IFRAME with a certain XML file and XSL stylesheet that triggers a crash in mshtml.dll when a refresh is called, probably a null pointer dereference.

5
CVSS
19.9%
EPSS (exploit prob.)
97th
EPSS percentile
2007-03-02
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie6.0
microsoftie7
microsoftie7
microsoftie7
microsoftie7
microsoftie7.0
microsoftie7.0
microsoftie7.0
microsoftinternet_explorer6
microsoftinternet_explorer6.0
microsoftinternet_explorer6.0.2600
microsoftinternet_explorer6.0.2800
microsoftinternet_explorer6.0.2800.1106
microsoftinternet_explorer6.0.2900
microsoftinternet_explorer6.0.2900.2180
microsoftinternet_explorer7.0
microsoftinternet_explorer7.0
microsoftinternet_explorer7.0
microsoftinternet_explorer7.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-7065