Cross-site scripting (XSS) vulnerability in Internet Explorer 5.01 and 6 in Microsoft Windows 2000 SP4 permits access to local "HTML-embedded resource files" in the Microsoft Management Console (MMC) library, which allows remote authenticated users to execute arbitrary commands, aka "MMC Redirect Cross-Site Scripting Vulnerability."
References
Configurations
Configuration 1 (hide)
|
History
23 Jul 2021, 12:18
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:* |
Information
Published : 2006-08-09 00:04
Updated : 2024-02-04 16:52
NVD link : CVE-2006-3643
Mitre link : CVE-2006-3643
CVE.ORG link : CVE-2006-3643
JSON object : View
Products Affected
microsoft
- internet_explorer
- ie
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')