CVE-2006-4687

N/A Unknown
Published: November 14, 2006 Modified: April 23, 2026
View on NVD

Description

Microsoft Internet Explorer 5.01 through 6 allows remote attackers to execute arbitrary code via crafted layout combinations involving DIV tags and HTML CSS float properties that trigger memory corruption, aka "HTML Rendering Memory Corruption Vulnerability."

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://securitytracker.com/id?1017223
Source: secure@microsoft.com
http://www.kb.cert.org/vuls/id/197852
Source: secure@microsoft.com
US Government Resource
http://www.osvdb.org/31323
Source: secure@microsoft.com
http://www.securityfocus.com/bid/21020
Source: secure@microsoft.com
http://www.us-cert.gov/cas/techalerts/TA06-318A.html
Source: secure@microsoft.com
US Government Resource
http://www.vupen.com/english/advisories/2006/4505
Source: secure@microsoft.com
Vendor Advisory
http://www.zerodayinitiative.com/advisories/ZDI-06-041.html
Source: secure@microsoft.com
Vendor Advisory
http://securitytracker.com/id?1017223
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.kb.cert.org/vuls/id/197852
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.osvdb.org/31323
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/archive/1/451590/100/100/threaded
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/21020
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.us-cert.gov/cas/techalerts/TA06-318A.html
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
http://www.vupen.com/english/advisories/2006/4505
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.zerodayinitiative.com/advisories/ZDI-06-041.html
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/29199
Source: af854a3a-2127-422b-91ae-364da2661108

22 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
61.9%
98th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

microsoft