CVE-2006-3656
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 21%
from disclosure to weapon0 days
Published on NVDJul 17
1st PoCJul 14
exploitation probability
21%top 3% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Unspecified vulnerability in Microsoft PowerPoint 2003 allows user-assisted attackers to cause memory corruption via a crafted PowerPoint file, which triggers the corruption when the file is closed. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3655, CVE-2006-3660, and CVE-2006-3590, although it is possible that they are all different.
Affected products
n/a · n/apublic PoCs found — 2
cve_referencepacketstormsecurity.org/0607-exploits/mspp-poc3.txtunverifiedexploitdbwww.exploit-db.com/exploits/28226unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://downloads.securityfocus.com/vulnerabilities/exploits/PP2003sp2patched_fr_exploit-method.txthttp://packetstormsecurity.org/0607-exploits/mspp-poc3.txthttp://secunia.com/advisories/21061https://exchange.xforce.ibmcloud.com/vulnerabilities/27781https://exchange.xforce.ibmcloud.com/vulnerabilities/27782http://www.securityfocus.com/archive/1/440108/100/0/threadedhttp://www.securityfocus.com/archive/1/440370/100/0/threadedhttp://www.securityfocus.com/archive/1/440867/100/0/threadedhttp://www.securityfocus.com/bid/18993http://www.securityfocus.com/bid/19229http://www.vupen.com/english/advisories/2006/2815