CVE-2006-0003 EXPLOIT
5.1
MEDIUM · CVSS 2.0 · EPSS 82.5% (pctl 100)
Patch early
A public exploit exists.
Description
Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and distributed in Microsoft Data Access Components (MDAC) 2.7 and 2.8, allows remote attackers to execute arbitrary code via unknown attack vectors.
Scoring
| CVSS | 5.1 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
| EPSS | 82.5% — more likely to be exploited than 100% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2006-04-12 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| microsoft | data access components |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Internet Explorer - COM CreateObject Code Execution (MS06-014/MS06-073) (Metasploit) | 2010-09-20 |
| exploit-db | Microsoft Internet Explorer - 'MDAC' Remote Code Execution (MS06-014) (Metasploit) (2) | 2006-08-10 |
| exploit-db | Microsoft Internet Explorer - MDAC Remote Code Execution (MS06-014) | 2006-07-21 |
References
- http://secunia.com/advisories/19583
- http://secunia.com/advisories/20719
- http://securitytracker.com/id?1015894
- http://www.hitachi-support.com/security_e/vuls_e/HS06-013_e/01-e.html
- http://www.hitachi-support.com/security_e/vuls_e/HS06-013_e/index-e.html
- http://www.kb.cert.org/vuls/id/234812
- http://www.osvdb.org/24517
- http://www.securityfocus.com/archive/1/475104/100/100/threaded
- http://www.securityfocus.com/archive/1/475108/100/100/threaded
- http://www.securityfocus.com/archive/1/475118/100/100/threaded
- http://www.securityfocus.com/archive/1/475490/100/100/threaded
- http://www.securityfocus.com/archive/1/487216/100/200/threaded
- http://www.securityfocus.com/archive/1/487219/100/200/threaded
- http://www.securityfocus.com/bid/17462
- http://www.securityfocus.com/bid/20797
- http://www.securityfocus.com/data/vulnerabilities/exploits/0day_ie.pdf
- http://www.us-cert.gov/cas/techalerts/TA06-101A.html
- http://www.vupen.com/english/advisories/2006/1319
- http://www.vupen.com/english/advisories/2006/2452
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-014
→ the Explorer · watch your stack · NVD