Описание
Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.
Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2005-2117
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-049
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1291
- http://secunia.com/advisories/17168
- http://secunia.com/advisories/17172
- http://secunia.com/advisories/17223
- http://support.avaya.com/elmodocs2/security/ASA-2005-214.pdf
- http://www.securityfocus.com/bid/15064
- http://www.us-cert.gov/cas/techalerts/TA05-284A.html
EPSS
Процентиль: 98%
0.46533
Средний
CVE ID
Связанные уязвимости
nvd
больше 20 лет назад
Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.
EPSS
Процентиль: 98%
0.46533
Средний