5
CVSSv2

CVE-2004-0841

Published: 23/12/2004 Updated: 23/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Internet Explorer 6.x allows remote malicious users to install arbitrary programs via mousedown events that call the Popup.show method and use drag-and-drop actions in a popup window, aka "HijackClick 3" and the "Script in Image Tag File Download Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5.5

avaya ip600 media servers

microsoft internet explorer 5.0.1

microsoft internet explorer 6.0

avaya s3400

avaya s8100

microsoft ie 6.0

avaya definity one media server

avaya modular messaging message storage server 1.1

avaya modular messaging message storage server 2.0

Exploits

source: wwwsecurityfocuscom/bid/10690/info A vulnerability exists in Microsoft Internet Explorer that may permit a malicious Web page to hijack mouse events This could potentially be exploited to trick an unsuspecting user into performing unintended actions such as approving pop-up dialogs The method caching variant of this attack is a ...