Buffer overflow in the Extensible Stylesheet Language Transformations (XSLT) processing in Microsoft XML Parser 2.6 and XML Core Services 3.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted Web page.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.284
EPSS Ranking 96.3%