Microsoft Internet Explorer 6.0 through 8.0 beta2 allows remote attackers to cause a denial of service (application crash) via an onload=screen[] attribute value in a BODY element.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Internet_explorer | Microsoft | 6 (including) | 6 (including) |
Internet_explorer | Microsoft | 6-sp1 (including) | 6-sp1 (including) |
Internet_explorer | Microsoft | 6-sp2 (including) | 6-sp2 (including) |
Internet_explorer | Microsoft | 7 (including) | 7 (including) |
Internet_explorer | Microsoft | 8-beta1 (including) | 8-beta1 (including) |
Internet_explorer | Microsoft | 8-beta2 (including) | 8-beta2 (including) |