HTTP: ActiveX Exception Handling

This signature detects attempts to exploit a known vulnerability Microsoft Internet Explorer. Malicious Web pages containing dangerous script object can exploit this vulnerability and gain control of the client browser.

Extended Description

Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code by using JavaScript to cause certain errors simultaneously, which results in the access of previously freed memory, aka "Script Error Handling Memory Corruption Vulnerability."

Short Name
HTTP:STC:CLSID:ACTIVEX:EXECHAND
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
ActiveX CVE-2006-5579 Exception Handling bid:21552
Release Date
12/12/2006
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
CVSS Score

9.3

Found a potential security threat?