CVE-2009-2655 Information
Feb 14, 2021
cve
Description
mshtml.dll in Microsoft Internet Explorer 7 and 8 on Windows XP SP3 allows remote attackers to cause a denial of service (application crash) by calling the JavaScript findText method with a crafted Unicode string in the first argument and only one additional argument as demonstrated by a second argument of -1.
Reference
http://www.exploit-db.com/exploits/9253 http://www.securityfocus.com/bid/35799 https://exchange.xforce.ibmcloud.com/vulnerabilities/52249 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A12700
Share on: