CVE-2002-1984Microsoft Internet Explorer vulnerability

2 documents2 sources
Severity
5.0MEDIUMNVD
EPSS
11.9%
top 6.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 31
Latest updateApr 30

Description

Microsoft Internet Explorer 5.0.1 through 6.0 on Windows 2000 or Windows XP allows remote attackers to cause a denial of service (crash) via an OBJECT tag that contains a crafted CLASSID (CLSID) value of "CLSID:00022613-0000-0000-C000-000000000046".

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDmicrosoft/internet_explorer5.0.1, 5.5, 6.0+2

🔴Vulnerability Details

1
GHSA
GHSA-x52x-rwmr-42x9: Microsoft Internet Explorer 52022-04-30
CVE-2002-1984 — Microsoft vulnerability | cvebase