AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2006-3873

HIGH · CVSS 7.5 EPSS 28.57%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-09-12 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2006-3873
Severity
HIGH
CVSS
7.5
EPSS
28.57%
Microsoft Windows

Original Filing — NVD Description

Heap-based buffer overflow in URLMON.DLL in Microsoft Internet Explorer 6 SP1 on Windows 2000 and XP SP1, with versions the MS06-042 patch before 20060912, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long URL in a GZIP-encoded website that was the target of an HTTP redirect, due to an incomplete fix for CVE-2006-3869.