CVE-2006-4627
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
07/09/2006
Last modified:
03/04/2025
Description
System Information ActiveX control (msinfo.dll), when accessed via Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via a SaveFile function with a long (1) computer and possibly (2) filename and (3) category argument.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:microsoft:system_information_activex_control:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://noderat.spaces.live.com/blog/cns%216ADE4614B66EADD2%211150.entry
- http://www.blogger.com/comment.g?blogID=30557436&postID=115190809697529918
- http://www.osvdb.org/28381
- http://noderat.spaces.live.com/blog/cns%216ADE4614B66EADD2%211150.entry
- http://www.blogger.com/comment.g?blogID=30557436&postID=115190809697529918
- http://www.osvdb.org/28381



