Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2001-0322Microsoft Internet Explorer vulnerability

4 documents4 sources
Severity
5.0MEDIUMNVD
EPSS
12.5%
top 6.05%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJun 2
Latest updateApr 30

Description

MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

🔴Vulnerability Details

2
GHSA
GHSA-w7f5-4j4j-pr48: MSHTML2022-04-30
CVEList
CVE-2001-0322: MSHTML2001-04-04

💥Exploits & PoCs

1
Exploit-DB
Microsoft Internet Explorer 4 / Outlook 2000/5.5 - 'MSHTML.dll' Crash2001-01-15
CVE-2001-0322 — Microsoft vulnerability | cvebase