CVE-2006-3351

3 documents3 sources
Severity
5.4MEDIUM
EPSS
25.5%
top 3.78%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 6
Latest updateMay 1

Description

Buffer overflow in Windows Explorer (explorer.exe) on Windows XP and 2003 allows user-assisted attackers to cause a denial of service (repeated crash) and possibly execute arbitrary code via a .url file with an InternetShortcut tag containing a long URL and a large number of "file:" specifiers.

CVSS vector

AV:N/AC:H/C:N/I:N/A:CExploitability: 4.9 | Impact: 6.9

Affected Packages2 packages

NVDmicrosoft/windows_2003_server15 versions+14
NVDmicrosoft/windows_xpibm_oem_version

🔴Vulnerability Details

2
GHSA
GHSA-5jgr-h98g-jpj4: Buffer overflow in Windows Explorer (explorer2022-05-01
CVEList
CVE-2006-3351: Buffer overflow in Windows Explorer (explorer2006-07-06
CVE-2006-3351 (MEDIUM CVSS 5.4) | Buffer overflow in Windows Explorer | cvebase.io