Vulnerabilities > CVE-2003-0809 - Unspecified vulnerability in Microsoft IE and Internet Explorer
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Internet Explorer 5.01 through 6.0 does not properly handle object tags returned from a Web server during XML data binding, which allows remote attackers to execute arbitrary code via an HTML e-mail message or web page.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 9 |
Exploit-Db
description | Microsoft Internet Explorer 5 XML Page Object Type Validation Vulnerability. CVE-2003-0809. Remote exploit for windows platform |
id | EDB-ID:23122 |
last seen | 2016-02-02 |
modified | 2003-09-08 |
published | 2003-09-08 |
reporter | http-equiv |
source | https://www.exploit-db.com/download/23122/ |
title | Microsoft Internet Explorer 5 XML Page Object Type Validation Vulnerability |
Oval
accepted | 2014-02-24T04:00:11.283-05:00 | ||||||||||||||||||||
class | vulnerability | ||||||||||||||||||||
contributors |
| ||||||||||||||||||||
description | Internet Explorer 5.01 through 6.0 does not properly handle object tags returned from a Web server during XML data binding, which allows remote attackers to execute arbitrary code via an HTML e-mail message or web page. | ||||||||||||||||||||
family | windows | ||||||||||||||||||||
id | oval:org.mitre.oval:def:123 | ||||||||||||||||||||
status | accepted | ||||||||||||||||||||
submitted | 2003-11-12T05:00:00.000-04:00 | ||||||||||||||||||||
title | IE Improper Object Tag Handling | ||||||||||||||||||||
version | 68 |