CVE-2009-2529: Code Injection
Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not properly handle argument validation for unspecified variables, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "HTML Component Handling Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2529?
CVE-2009-2529 is rated as critical due to its potential for remote code execution.
How do I fix CVE-2009-2529?
To fix CVE-2009-2529, users should update their Microsoft Internet Explorer to a patched version provided by Microsoft.
What versions of Internet Explorer are affected by CVE-2009-2529?
CVE-2009-2529 affects Microsoft Internet Explorer versions 5.01 SP4, 6, 7, and 8.
Can CVE-2009-2529 be exploited through email attachments?
Yes, CVE-2009-2529 can be exploited through crafted HTML documents delivered via email or other means.
What operating systems are vulnerable to CVE-2009-2529?
CVE-2009-2529 affects several Windows operating systems, including Windows 2000, Windows XP, Windows Vista, and Windows Server editions.