CVE-2003-0531
Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to access and execute script in the My Computer domain using the browser cache via crafted Content-Type and Content-Disposition headers, aka the "Browser Cache Script Execution in My…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 26.5%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to access and execute script in the My Computer domain using the browser cache via crafted Content-Type and Content-Disposition headers, aka the "Browser Cache Script Execution in My Computer Zone" vulnerability.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 26.50% probability · 98th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/ie · microsoft/internet explorer
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/9580
- http://www.cert.org/advisories/CA-2003-22.htmlUS Government Resource
- http://www.kb.cert.org/vuls/id/205148US Government Resource
- http://www.lac.co.jp/security/english/snsadv_e/67_e.html
- http://www.securityfocus.com/bid/8457Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-032
- https://exchange.xforce.ibmcloud.com/vulnerabilities/12961
- http://secunia.com/advisories/9580
- http://www.cert.org/advisories/CA-2003-22.htmlUS Government Resource
- http://www.kb.cert.org/vuls/id/205148US Government Resource
- http://www.lac.co.jp/security/english/snsadv_e/67_e.html
- http://www.securityfocus.com/bid/8457Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-032
- https://exchange.xforce.ibmcloud.com/vulnerabilities/12961
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.