Skip to main content

CVE detail

CVE-2006-3086

Stack-based buffer overflow in the HrShellOpenWithMonikerDisplayName function in Microsoft Hyperlink Object Library (hlink.dll) allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long hyperlink, as demonstrated using an Excel worksheet with a long link in Unicode, aka "Hyperlink COM Object Buffer Overflow Vulnerability." NOTE: this is a different issue than CVE-2006-3059.

CVSS 9.3 · CriticalBuzz score 11.9

Buzz score

Why this CVE is surfacing

Buzz score total 11.9

This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.

Buzz score components · mention 6.9 · diversity 5.0 · KEV 0.0 · OTX 0.0 · PoC 0.0
Mention score
6.9
1 evidence mentions in the snapshot
Diversity score
5.0
1 sources across 1 categories
KEV score
0.0
No KEV entry observed
OTX score
0.0
0 OTX pulses
PoC score
0.0
0 repos · best confidence N/A
Best PoC traction
0
Maximum stars on a matched PoC repo

Why it matters now

Mention timeline

Total mentions
0
within the 30d window
Peak daily
0
highest bucket

Evidence

Source links by recency

Newest mentions first
1 source links · newest first
  • OfficeCat is a command line utility developed by the Sourcefire VRT that can be used to process Microsoft Office Documents to determine the presence of potential exploit conditions in the file. Officecat is available for Windows and Linux. Vulnerabilities checked by OfficeCat: CVE-2006-0001 CVE-2006-1301 CVE-2006-1306 CVE-2006-1308 CVE-2006-1540 CVE-2006-2492 CVE-2006-3014 CVE-2006-3086 CVE-2006-3431 CVE-2006-3432 CVE-2006-3493 CVE-2006-3590 CVE-2006-3656 CVE-2006-3864 CVE-2006-3865 CVE-2006-3875 CVE-2006-3876 CVE-2006-3877 CVE-2006-4534 CVE-2006-4694 CVE-2006-4700 CVE-2006-4701 CVE-2006-5994 CVE-2006-5995 CVE-2006-6456 CVE-2006-6561 CVE-2007-0027 CVE-2007-0030 CVE-2007-0031 CVE-2007-0515 CVE-2007-0671 CVE-2007-1203 CVE-2007-1214 … More →

    newswww.helpnetsecurity.comNov 2, 2009, 3:02 PM

Exploit code

Public exploit repository references

Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.

0 repository references · best confidence N/A · max 0 stars
No public PoC repositories have been matched yet.

Related records

Similar CVEs

6 related CVEs with shared weakness or product evidence
  • CVE-2026-76008

    A flaw has been found in Comfast CF-N1-S 2.6.0.1. This affects the function get_para_from_uri of the file /cgi-bin/mbox-config of the component URI Parameter Parsing. This manipul…

    CVSS 10.0 · Critical
    5 mentions
  • CVE-2026-76004

    A security vulnerability has been detected in UTT HiPER 1250GW up to 3.2.7-210907-180535. Affected by this vulnerability is the function strcpy of the file /goform/aspApBasicConfi…

    CVSS 8.6 · High
    5 mentions
  • CVE-2026-76003

    A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argumen…

    CVSS 8.6 · High
    5 mentions
  • CVE-2026-75976

    A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argu…

    CVSS 8.6 · High
    6 mentions
  • CVE-2026-75877

    A flaw has been found in TRENDnet TV-IP751WIC 11.03.03. This vulnerability affects the function SystemNetworkChanged/SystemDDNSChanged/SystemEmailChanged/SystemFTPChanged/websChec…

    CVSS 8.6 · High
    6 mentions
  • CVE-2026-75784

    A vulnerability was detected in TRENDnet TEW-WLC100 1v2.07b01. Affected by this issue is the function FUN_0040da4c of the file /usr/nginx/sbin/nginx of the component HTTP Header H…

    CVSS 9.3 · Critical
    6 mentions