MS.IE.CreateTextRange.Remote.Code.Execution

description-logoDescription

This indicates a possible attempt to exploit a remote code execution vulnerability in Microsoft Internet Explorer.
The vulnerability is caused by an error in the processing of the "createTextRange()" method call, applied to a radio button control. It can be exploited by using a malicious web site to corrupt memory in a way that allows the program flow to be redirected to the heap.

affected-products-logoAffected Products

Microsoft Internet Explorer 5.0, 6.0, 6.0 SP2

Impact logoImpact

System compromise: remote code execution.

recomended-action-logoRecommended Actions

The recently released Internet Explorer 7 Beta 2 Preview is not vulnerable to this exploit. Upgrade or apply patches to earlier Internet Explorer versions.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)