vendor:
Internet Explorer
by:
AmesianX
9
CVSS
CRITICAL
Null Pointer Dereference
CWE
Product Name: Internet Explorer
Affected Version From: Microsoft Internet Explorer Ver.6.0.2800.1106;SP1 (Windows 2000 Advanced Server)
Affected Version To: Microsoft Internet Explorer Ver.6.0.2900.2180.xpsp.050928-1517;SP2 (Windows XP Pro)
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows XP SP2 FULL PATCHED (Korean Language), Windows 2000 Advanced Server (Korean Language)
2007
Microsoft Internet Explorer Malformed HTML Null Pointer Dereference Vulnerability (mshtml.dll) (0-day)
The bug discovered by AmesianX in powerhacker.net can crash Microsoft Internet Explorer 6 when executing a 'for' script. The impact of this vulnerability is a denial of service.
Mitigation:
Not Patched (zero-day)