HomeYahooCVE-2006-6603

CVE-2006-6603

UNKNOWN
9.3CVSS
Published: 2006-12-15
Updated: 2025-04-09
AI Analysis

Description

Buffer overflow in the YMMAPI.YMailAttach ActiveX control (ymmapi.dll) before 2005.1.1.4 in Yahoo! Messenger allows remote attackers to execute arbitrary code via a crafted HTML document. NOTE: some details were obtained from third party information.

CVSS Metrics

Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Access Vector
network
Access Cmplx
medium
Auth
none
Confidentiality
complete
Integrity
complete
Availability
complete
Weaknesses
NVD-CWE-Other

Metadata

Primary Vendor
YAHOO
Published
12/15/2006
Last Modified
4/9/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

yahoo : messengeryahoo : messengeryahoo : messengeryahoo : messengeryahoo : messengeryahoo : messengeryahoo : messenger

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief