CVE detail
CVE-2006-3086
Stack-based buffer overflow in the HrShellOpenWithMonikerDisplayName function in Microsoft Hyperlink Object Library (hlink.dll) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long hyperlink, as demonstrated using an Excel worksheet with a long link in Unicode, aka "Hyperlink COM Object Buffer Overflow Vulnerability." NOTE: this is a different issue than CVE-2006-3059.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 6.9 · diversity 5.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
1 source links · newest first
- Find potential exploit conditions in Microsoft Office documentsHelp Net Security
OfficeCat is a command line utility developed by the Sourcefire VRT that can be used to process Microsoft Office Documents to determine the presence of potential exploit conditions in the file. Officecat is available for Windows and Linux. Vulnerabilities checked by OfficeCat: CVE-2006-0001 CVE-2006-1301 CVE-2006-1306 CVE-2006-1308 CVE-2006-1540 CVE-2006-2492 CVE-2006-3014 CVE-2006-3086 CVE-2006-3431 CVE-2006-3432 CVE-2006-3493 CVE-2006-3590 CVE-2006-3656 CVE-2006-3864 CVE-2006-3865 CVE-2006-3875 CVE-2006-3876 CVE-2006-3877 CVE-2006-4534 CVE-2006-4694 CVE-2006-4700 CVE-2006-4701 CVE-2006-5994 CVE-2006-5995 CVE-2006-6456 CVE-2006-6561 CVE-2007-0027 CVE-2007-0030 CVE-2007-0031 CVE-2007-0515 CVE-2007-0671 CVE-2007-1203 CVE-2007-1214 … More →
newswww.helpnetsecurity.comNov 2, 2009, 3:02 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2026-76008CVSS 10.0 · Critical
A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipul…
- CVE-2026-76004CVSS 8.6 · High
A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfi…
- CVE-2026-76003CVSS 8.6 · High
A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argumen…
- CVE-2026-75976CVSS 8.6 · High
A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argu…
- CVE-2026-75877CVSS 8.6 · High
A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websChec…
- CVE-2026-75784CVSS 9.3 · Critical
A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the function FUN_0040da4c of the file /usr/nginx/sbin/nginx of the component HTTP Header H…