Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the location or URL property of a MHTMLFile ActiveX object.Referenceshttp://www.osvdb.org/27108http://www.securityfocus.com/bid/19013https://exchange.xforce.ibmcloud.com/vulnerabilities/27761http://browserfun.blogspot.com/2006/07/mobb-16-mhtmlfile-location.htmlhttp://www.vupen.com/english/advisories/2006/2831