7.5
CVSSv2

CVE-2003-0469

Published: 07/08/2003 Updated: 12/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via cut-and-paste operation, as demonstrated in Internet Explorer 5.0 using a long "align" argument in an HR tag.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 98se

microsoft windows me

microsoft windows nt 4.0

microsoft windows 2003 server r2

microsoft windows 98

microsoft windows 2000

microsoft windows 2003 server 64-bit

microsoft windows xp

Exploits

source: wwwsecurityfocuscom/bid/8016/info Microsoft Windows platforms are prone to a boundary condition error in the HTML converter If the 'Align' attribute of the 'HR' tag is given an excessively large value, an internal buffer will be overrun This issue can be exploited via applications which use the HTML converter (such as Internet E ...