[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2005-2127Date: (C)2005-08-19   (M)2023-12-22


Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for use within Internet Explorer, as originally demonstrated using the (1) DDS Library Shape Control (Msdds.dll) COM object, and other objects including (2) Blnmgrps.dll, (3) Ciodm.dll, (4) Comsvcs.dll, (5) Danim.dll, (6) Htmlmarq.ocx, (7) Mdt2dd.dll (as demonstrated using a heap corruption attack with uninitialized memory), (8) Mdt2qd.dll, (9) Mpg4ds32.ax, (10) Msadds32.ax, (11) Msb1esen.dll, (12) Msb1fren.dll, (13) Msb1geen.dll, (14) Msdtctm.dll, (15) Mshtml.dll, (16) Msoeacct.dll, (17) Msosvfbr.dll, (18) Mswcrun.dll, (19) Netshell.dll, (20) Ole2disp.dll, (21) Outllib.dll, (22) Psisdecd.dll, (23) Qdvd.dll, (24) Repodbc.dll, (25) Shdocvw.dll, (26) Shell32.dll, (27) Soa.dll, (28) Srchui.dll, (29) Stobject.dll, (30) Vdt70.dll, (31) Vmhelper.dll, and (32) Wbemads.dll, aka a variant of the "COM Object Instantiation Memory Corruption vulnerability."

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.5
Exploit Score: 10.0
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
SECTRACK-1014727
BID-14594
BID-15061
SECUNIA-16480
SECUNIA-17172
SECUNIA-17223
SECUNIA-17509
http://www.securityfocus.com/archive/1/470690/100/0/threaded
SREASON-72
ADV-2005-1450
MS05-052
TA05-284A
TA05-347A
TA06-220A
VU#740372
VU#898241
VU#959049
Win-msdss-command-execution(21895)
http://isc.sans.org/diary.php?date=2005-08-18
http://support.avaya.com/elmodocs2/security/ASA-2005-214.pdf
http://www.microsoft.com/technet/security/advisory/906267.mspx
microsoft-ie-mshtml-dos(34754)
oval:org.mitre.oval:def:1155
oval:org.mitre.oval:def:1454
oval:org.mitre.oval:def:1464
oval:org.mitre.oval:def:1468
oval:org.mitre.oval:def:1535
oval:org.mitre.oval:def:1538

CPE    28
cpe:/a:microsoft:project:98
cpe:/a:microsoft:project:2002:sp1
cpe:/a:microsoft:visual_studio_.net:2002:gold
cpe:/a:microsoft:visio:2003:sp1
...
CWE    1
CWE-119
OVAL    6
oval:org.mitre.oval:def:1538
oval:org.mitre.oval:def:1454
oval:org.mitre.oval:def:1155
oval:org.mitre.oval:def:1535
...

© SecPod Technologies