7.5
CVSSv2

CVE-2003-1328

Published: 19/02/2003 Updated: 23/07/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The showHelp() function in Microsoft Internet Explorer 5.01, 5.5, and 6.0 supports certain types of pluggable protocols that allow remote malicious users to bypass the cross-domain security model and execute arbitrary code, aka "Improper Cross Domain Security Validation with ShowHelp functionality."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5.0.1

microsoft internet explorer 5.5

microsoft internet explorer 6.0

microsoft ie 6.0

Exploits

source: wwwsecurityfocuscom/bid/6780/info Microsoft Internet Explorer implements the showHelp() function as a means of displaying help content contained in HTML pages However, this function is capable of performing too many other actions outside of its intended functionality through pluggable protocols These actions could include readin ...