Vulnerability Details CVE-2009-1141
Microsoft Internet Explorer 6 for Windows XP SP2 and SP3 and Server 2003 SP2 allows remote attackers to execute arbitrary code via unspecified DHTML function calls related to a tr element and the "insertion, deletion and attributes of a table cell," which trigger memory corruption when the window is destroyed, aka "DHTML Object Memory Corruption Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.657
EPSS Ranking 98.4%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2009-1141
-
cpe:2.3:a:microsoft:internet_explorer:6
-
cpe:2.3:o:microsoft:windows_server_2003:*
-
cpe:2.3:o:microsoft:windows_server_2003:-
-
cpe:2.3:o:microsoft:windows_server_2003:r2
-
cpe:2.3:o:microsoft:windows_xp:*
-
cpe:2.3:o:microsoft:windows_xp:-
-
cpe:2.3:o:microsoft:windows_xp:unknown