Denial of Service Vulnerability in Microsoft Internet Explorer
CVE-2010-1991

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
20 May 2010

Summary

A vulnerability in Microsoft Internet Explorer versions 6 through 8 allows remote attackers to execute a mail application inadvertently due to the misconfiguration of IFRAME elements containing 'mailto:' URLs. An attacker can exploit this flaw by delivering an HTML document with numerous IFRAME elements, leading to a denial of service through excessive application launches.

References

EPSS Score

13% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.