5
CVSSv2

CVE-2003-1028

Published: 20/01/2004 Updated: 23/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The download function of Internet Explorer 6 SP1 allows remote malicious users to obtain the cache directory name via an HTTP response with an invalid ContentType and a .htm file, which could allow remote malicious users to bypass security mechanisms that rely on random names, as demonstrated by threadid10008.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5.0

microsoft internet explorer 5.0.1

microsoft internet explorer 6.0

microsoft ie 6.0

microsoft internet explorer 5.5