CVE-2004-1312
published 2005-01-03CVE-2004-1312: A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service…
PriorityP423critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
2.47%
82.5th percentile
A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service via certain strings, as reported in GFI MailEssentials for Exchange 9 and 10, and GFI MailSecurity for Exchange 8, which causes emails to remain in IIS or Exchange mail queues.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gfi | mailessentials | — | — |
| gfi | mailessentials | — | — |
| gfi | mailessentials | — | — |
| gfi | mailsecurity | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://kbase.gfi.com/showarticle.asp?id=KBID002249http://secunia.com/advisories/13708http://www.csis.dk/default.asp?m=1&a=194http://www.securityfocus.com/bid/12148http://kbase.gfi.com/showarticle.asp?id=KBID002249http://secunia.com/advisories/13708http://www.csis.dk/default.asp?m=1&a=194http://www.securityfocus.com/bid/12148
2005-01-03
Published