VYPR

by Microsoft

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-46850.040.55Oct 10, 2006The XMLHTTP ActiveX control in Microsoft XML Parser 2.6 and XML Core Services 3.0 through 6.0 does not properly handle HTTP server-side redirects, which allows remote user-assisted attackers to access content from other domains.
CVE-2006-46860.030.33Oct 10, 2006Buffer overflow in the Extensible Stylesheet Language Transformations (XSLT) processing in Microsoft XML Parser 2.6 and XML Core Services 3.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted Web page.