10
CVSSv2

CVE-2004-1050

Published: 31/12/2004 Updated: 23/07/2021
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in Internet Explorer 6 allows remote malicious users to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME vulnerability" or the "HTML Elements Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

avaya ip600 media servers r8

avaya definity one media server r12

avaya definity one media server r9

avaya definity one media server r7

avaya ip600 media servers r9

avaya definity one media server r8

avaya s8100 r9

avaya definity one media server

microsoft ie 6.0

avaya s8100 r11

avaya s8100

avaya ip600 media servers r6

avaya s8100 r7

avaya ip600 media servers r10

avaya ip600 media servers

avaya ip600 media servers r12

avaya s8100 r6

avaya s8100 r10

avaya ip600 media servers r7

avaya ip600 media servers r11

avaya definity one media server r6

avaya s8100 r8

avaya s8100 r12

avaya s3400

avaya definity one media server r10

avaya definity one media server r11

microsoft internet explorer 6.0

avaya modular messaging message storage server s3400

Exploits

<HTML><!-- ________________________________________________________________________________ ,sSSSs, Ss, Internet Exploiter v01 SS" `YS' '*Ss MSIE <IFRAME src= name=""> BoF PoC exploit iS' ,SS" Copyright (C) 2003, 2004 by Berend-Jan Wever YS, ss ,sY" wwweduptudelftnl/ ...