CVE-2006-0544
published 2006-02-04CVE-2006-0544: urlmon.dll in Microsoft Internet Explorer 7.0 beta 2 (aka 7.0.5296.0) allows remote attackers to cause a denial of service (application crash) and possibly…
PriorityP335high7.5CVSS 2.0
AVNACLAuNCPIPAP
EXPLOIT
EPSS
21.52%
97.3th percentile
urlmon.dll in Microsoft Internet Explorer 7.0 beta 2 (aka 7.0.5296.0) allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a BGSOUND element with its SRC attribute set to "file://" followed by a large number of "-" (dash of hyphen) characters.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | ie | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Bugzilla
CVE-2006-1516 mysql anonymous login information leak
bugzilla·2006-05-05·CVSS 5.0
CVE-2006-1516 [MEDIUM] CVE-2006-1516 mysql anonymous login information leak
CVE-2006-1516 mysql anonymous login information leak
The check_connection function in sql_parse.cc in MySQL 4.0.x up to 4.0.26, 4.1.x
up to 4.1.18, and 5.0.x up to 5.0.20 allows remote attackers to read portions of
memory via a username without a trailing null byte, which causes a buffer over-read.
http://www.wisec.it/vulns.php?page=7
Discussion:
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0544.html
Bugzilla
CVE-2006-1517 Mysql information leak
bugzilla·2006-05-04·CVSS 5.0
CVE-2006-1517 [MEDIUM] CVE-2006-1517 Mysql information leak
CVE-2006-1517 Mysql information leak
Mysql information leak
A bug was found in mysql which can leak a small amount of unallocated
memory to an authenticated client.
More information can be found here:
http://dev.mysql.com/doc/refman/5.0/en/news-5-0-21.html
http://www.wisec.it/vulns.php?page=8
Discussion:
An advisory has been issued which should help the problem
described in this bug report. This report is therefore being
closed with a resolution of ERRATA. For more information
on the solution and/or where to find the updated files,
please follow the link below. You may reopen this bug report
if the solution does not work for you.
http://rhn.redhat.com/errata/RHSA-2006-0544.html
2006-02-04
Published