AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-3086

HIGH · CVSS 9.3 EPSS 56.46%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-06-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-3086
Severity
HIGH
CVSS
9.3
EPSS
56.46%
Microsoft

Original NVD Description

Stack-based buffer overflow in the HrShellOpenWithMonikerDisplayName function in Microsoft Hyperlink Object Library (hlink.dll) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long hyperlink, as demonstrated using an Excel worksheet with a long link in Unicode, aka "Hyperlink COM Object Buffer Overflow Vulnerability." NOTE: this is a different issue than CVE-2006-3059.