7.5
CVSSv2

CVE-2002-0371

Published: 03/07/2002 Updated: 23/07/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in gopher client for Microsoft Internet Explorer 5.1 up to and including 6.0, Proxy Server 2.0, or ISA Server 2000 allows remote malicious users to execute arbitrary code via a gopher:// URL that redirects the user to a real or simulated gopher server that sends a long response.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 6.0

microsoft isa server 2000

microsoft internet explorer 5.0.1

microsoft proxy server 2.0

microsoft internet explorer 5.5

university of minnesota gopher

Exploits

source: wwwsecurityfocuscom/bid/4930/info Microsoft Internet Explorer, Proxy Server and ISA Server includes a gopher client Reportedly, these clients are vulnerable to a buffer overflow condition The vulnerability exists in the component that parses gopher replies A malicious server is able to send a reply that will overflow the buffe ...