← back
CVE-2006-4777observed exploitation

CVE-2006-4777

82Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actepss 79%
from disclosure to weapon0 days
Published on NVDSep 14
1st PoCSep 13
metasploit+61d
VulnCheck+61d
exploitation probability
79%top 1% of all CVEs
observed exploitation
yesVulnCheck
4 public exploit(s)
Heap-based buffer overflow in the DirectAnimation Path Control (DirectAnimation.PathControl) COM object (daxctle.ocx) for Internet Explorer 6.0 SP1, on Chinese and possibly other Windows distributions, allows remote attackers to execute arbitrary code via unknown manipulations in arguments to the KeyFrame method, possibly related to an integer overflow, as demonstrated by daxctle2, and a different vulnerability than CVE-2006-4446.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.