First published: Fri Jun 23 2006(Updated: )
Unspecified versions of Internet Explorer allow remote attackers to cause a denial of service (crash) via an IFRAME with a src tag containing a "File://" URI followed by an 8-bit character. NOTE: some third parties were unable to verify this issue.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =6.0.2900 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3200 is classified as a denial of service vulnerability affecting certain versions of Internet Explorer.
To mitigate CVE-2006-3200, it is recommended to apply any available patches or updates from Microsoft for affected versions of Internet Explorer.
CVE-2006-3200 specifically affects Internet Explorer version 6.0.2900.
CVE-2006-3200 is associated with a denial of service attack that can cause Internet Explorer to crash.
Yes, CVE-2006-3200 can be exploited remotely through an IFRAME containing specific malformed URI.