Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-v4mq-xcq7-hmfv

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Internet Explorer 5.01 SP3 through 6.0 SP1 does not properly determine object types that are returned by web servers, which could allow remote attackers to execute arbitrary code via an object tag with a data parameter to a malicious file hosted on a server that returns an unsafe Content-Type, aka the "Object Type" vulnerability.

Internet Explorer 5.01 SP3 through 6.0 SP1 does not properly determine object types that are returned by web servers, which could allow remote attackers to execute arbitrary code via an object tag with a data parameter to a malicious file hosted on a server that returns an unsafe Content-Type, aka the "Object Type" vulnerability.

EPSS

Процентиль: 96%
0.23041
Средний

Связанные уязвимости

nvd
больше 22 лет назад

Internet Explorer 5.01 SP3 through 6.0 SP1 does not properly determine object types that are returned by web servers, which could allow remote attackers to execute arbitrary code via an object tag with a data parameter to a malicious file hosted on a server that returns an unsafe Content-Type, aka the "Object Type" vulnerability.

EPSS

Процентиль: 96%
0.23041
Средний