Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2003-0532 | First vendor Publication | 2003-08-27 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P) | |||
---|---|---|---|
Cvss Base Score | 7.5 | Attack Range | Network |
Cvss Impact Score | 6.4 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Internet Explorer 5.01 SP3 through 6.0 SP1 does not properly determine object types that are returned by web servers, which could allow remote attackers to execute arbitrary code via an object tag with a data parameter to a malicious file hosted on a server that returns an unsafe Content-Type, aka the "Object Type" vulnerability. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2003-0532 |
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
2964 | Multiple Browser Object HTA Execution Internet Explorer contains a flaw that fails to validate the nature of the file being loaded for the Object tag. This tag is used to embed all ActiveX into HTML pages, and therefore is susceptible to trojan style attacks via HTML in web pages or e-mail. When exploited, the trojan program will run silently and does not require user interaction. |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Windows Scripting Host Shell ActiveX CLSID unicode access RuleID : 8067 - Revision : 8 - Type : WEB-ACTIVEX |
2014-01-10 | Microsoft Windows Scripting Host Shell ActiveX clsid access RuleID : 8066 - Revision : 16 - Type : BROWSER-PLUGINS |
2014-01-10 | Microsoft Windows Reporting Tool ActiveX object access RuleID : 4160 - Revision : 11 - Type : BROWSER-PLUGINS |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:23:23 |
|
2024-11-28 12:05:39 |
|
2021-07-27 00:24:37 |
|
2021-07-24 01:44:15 |
|
2021-07-24 01:01:33 |
|
2021-07-23 17:24:41 |
|
2021-07-23 01:44:03 |
|
2021-07-23 01:01:32 |
|
2021-07-22 21:24:59 |
|
2021-05-04 12:02:04 |
|
2021-04-22 01:02:11 |
|
2020-05-23 00:15:26 |
|
2018-10-13 00:22:27 |
|
2016-10-18 12:01:12 |
|
2014-01-19 21:21:58 |
|
2013-05-11 11:51:41 |
|