Vulnerability Description
Microsoft Internet Explorer 6 and earlier allows remote attackers to obtain sensitive information via unspecified uses of the OBJECT HTML tag, which discloses the absolute path of the corresponding TIF folder, aka "TIF Folder Information Disclosure Vulnerability," and a different issue than CVE-2006-5578.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Ie | <= 6 |
References
- http://secunia.com/advisories/23288
- http://securitytracker.com/id?1017374
- http://www.osvdb.org/30816
- http://www.securityfocus.com/archive/1/454969/100/200/threaded
- http://www.securityfocus.com/bid/21507
- http://www.us-cert.gov/cas/techalerts/TA06-346A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2006/4966
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-07
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3
- http://secunia.com/advisories/23288
- http://securitytracker.com/id?1017374
- http://www.osvdb.org/30816
- http://www.securityfocus.com/archive/1/454969/100/200/threaded
- http://www.securityfocus.com/bid/21507
- http://www.us-cert.gov/cas/techalerts/TA06-346A.htmlUS Government Resource
FAQ
What is CVE-2006-5577?
CVE-2006-5577 is a vulnerability with a CVSS score of 4.3 (MEDIUM). Microsoft Internet Explorer 6 and earlier allows remote attackers to obtain sensitive information via unspecified uses of the OBJECT HTML tag, which discloses the absolute path of the corresponding TI...
How severe is CVE-2006-5577?
CVE-2006-5577 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-5577?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Ie.