Vulnerabilities > CVE-2005-4717 - Unspecified vulnerability in Microsoft products
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
Microsoft Internet Explorer 6.0 on Windows NT 4.0 SP6a, Windows 2000 SP4, Windows XP SP1, Windows XP SP2, and Windows Server 2003 SP1 allows remote attackers to cause a denial of service (client crash) via a certain combination of a malformed HTML file and a CSS file that triggers a null dereference, probably related to rendering of a DIV element that contains a malformed IMG tag, as demonstrated by IEcrash.htm and IEcrash.rar.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 | |
OS | 5 |
Exploit-Db
description | Microsoft Internet Explorer 6.0 Malformed HTML Parsing Denial of Service Vulnerability. CVE-2005-4717. Dos exploit for windows platform |
id | EDB-ID:26457 |
last seen | 2016-02-03 |
modified | 2005-11-01 |
published | 2005-11-01 |
reporter | [email protected] |
source | https://www.exploit-db.com/download/26457/ |
title | Microsoft Internet Explorer 6.0 Malformed HTML Parsing Denial of Service Vulnerability |