IT

Tracker / CVE-2009-3943

CVE-2009-3943

Medium 5.0

Microsoft Internet Explorer 6 through 6.0.2900.2180 and 7 through 7.0.6000.16711 allows remote attackers to cause a denial of service (application hang) via a JavaScript loop that configures the home page by using the setHomePage method and a DHTML behavior property.

Affected products and versions

microsoft internet_explorer · 6 → 6.0.2900.2180
microsoft internet_explorer · 7.0 → 7.0.6000.16711

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References