First published: Sat Dec 31 2005(Updated: )
Microsoft Internet Explorer 7.0 Beta3 and earlier allows remote attackers to cause a denial of service (crash) via a "text/html" HTML Content-type header sent in response to an XMLHttpRequest (AJAX).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =7.0-beta3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4810 is classified as a denial of service vulnerability.
To mitigate CVE-2005-4810, update to a later version of Microsoft Internet Explorer beyond 7.0 Beta 3.
CVE-2005-4810 affects Microsoft Internet Explorer version 7.0 Beta 3 and earlier.
CVE-2005-4810 involves remote attackers exploiting a flaw in handling "text/html" headers in AJAX requests.
The main symptom of CVE-2005-4810 is the crashing of Microsoft Internet Explorer when triggering the vulnerability.