// For flags

CVE-2006-2900

 

Severity Score

8.1
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Internet Explorer 6 allows user-assisted remote attackers to read arbitrary files by tricking a user into typing the characters of the target filename in a text box and using the OnKeyDown, OnKeyPress, and OnKeyUp Javascript keystroke events to change the focus and cause those characters to be inserted into a file upload input control, which can then upload the file when the user submits the form.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
None
Attack Vector
Network
Attack Complexity
High
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-06-07 CVE Reserved
  • 2006-06-07 CVE Published
  • 2024-08-07 CVE Updated
  • 2025-03-30 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
5.01
Search vendor "Microsoft" for product "Ie" and version "5.01"
windows_2000_sp4
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
windows_xp_professional_64bit
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
sp1, windows_98
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
sp1, windows_98_se
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
sp1, windows_millennium
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
sp1, windows_xpsp1
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
windows_2000_sp4
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
windows_server_2003_sp1
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
windows_server_2003_sp1_itanium
Affected
Microsoft
Search vendor "Microsoft"
Ie
Search vendor "Microsoft" for product "Ie"
6
Search vendor "Microsoft" for product "Ie" and version "6"
windows_xp_sp2
Affected
Canon
Search vendor "Canon"
Network Camera Server Vb101
Search vendor "Canon" for product "Network Camera Server Vb101"
*-
Affected