Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
mshtml.dll 6.00.2900.2873, as used in Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via nested OBJECT tags, which trigger invalid pointer dereferences including NULL dereferences. NOTE: the possibility of code execution was originally theorized, but Microsoft has stated that this issue is non-exploitable.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Internet Explorer 资源管理错误漏洞
Vulnerability Description
Microsoft Internet Explorer(IE)是美国微软(Microsoft)公司的一款Windows操作系统附带的Web浏览器。 Microsoft Internet Explorer处理某些嵌套OBJECT标签组合的方式存在漏洞,远程攻击者可能利用此漏洞导致浏览器拒绝服务。 通过以下方式生成的HTML: perl -e '{print "<STYLE></STYLE> <OBJECT> Bork "x32}' >test.html 会在mshtml.dll中导致空指针引用和固定的偏移(
CVSS Information
N/A
Vulnerability Type
N/A