Vulnerabilities > CVE-2004-2090 - Unspecified vulnerability in Microsoft IE and Internet Explorer
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
Microsoft Internet Explorer 5.0.1 through 6.0 allows remote attackers to determine the existence of arbitrary files via the VBScript LoadPicture method, which returns an error code if the file does not exist.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 10 |
Exploit-Db
description | Microsoft Internet Explorer 5.0.1 LoadPicture File Enumeration Weakness. CVE-2004-2090. Remote exploit for windows platform |
id | EDB-ID:23668 |
last seen | 2016-02-02 |
modified | 2004-02-07 |
published | 2004-02-07 |
reporter | Jelmer |
source | https://www.exploit-db.com/download/23668/ |
title | Microsoft Internet Explorer 5.0.1 LoadPicture File Enumeration Weakness |