CVE-2006-3354: Medium severity microsoft ie vulnerability
Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the Filter property of an ADODB.Recordset ActiveX object to certain values multiple times, which triggers a null dereference.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-3354?
CVE-2006-3354 has been identified as a denial of service vulnerability.
How do I fix CVE-2006-3354?
To mitigate CVE-2006-3354, update to a newer version of Microsoft Internet Explorer that does not allow this vulnerability.
What versions of Microsoft Internet Explorer are affected by CVE-2006-3354?
CVE-2006-3354 affects multiple versions, including Microsoft Internet Explorer 6 on Windows XP, Windows 2000, and Windows Server 2003.
What type of attack is possible with CVE-2006-3354?
CVE-2006-3354 can be exploited by remote attackers to crash the Internet Explorer application.
Is CVE-2006-3354 still a risk for modern systems?
CVE-2006-3354 is primarily a risk for legacy systems still running unsupported versions of Internet Explorer 6.