CNCVE编号:CNCVE-20010322 CVE编号:CAN-2001-0322 安全级别:中 漏洞中文描述: Internet Explorer 4.0(和其他版本)的MSHTML.DLL HTML解析器允许远程攻击者通过一个脚本,用于创建和删除浏览器窗口的对象,来引发拒绝服务(程序崩溃)。 漏洞英文描述: MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object. 漏洞参考: BUGTRAQ:20010115 Stack Overflow in MSHTML.DLL | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=97958685100219&w=2 | BID:2202 | URL:http://www.securityfocus.com/bid/2202 | XF:ie-mshtml-dos | URL:http://xforce.iss.net/static/5938.php 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误