CVE-2006-3910

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/07/2006
Last modified:
03/04/2025

Description

Internet Explorer 6 on Windows XP SP2, when Outlook is installed, allows remote attackers to cause a denial of service (crash) by calling the NewDefaultItem function of an OVCtl (OVCtl.OVCtl.1) ActiveX object, which triggers a null dereference.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:ie:6.0:sp2:*:*:*:*:*:*