|
|||
Rule General Information |
---|
Release Date: | 2010-03-09 | |
Rule Name: | Microsoft IE showHelp Code Execution Vulnerability -1 (CVE-2003-1041) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Internet Explorer 5.x and 6.0 allows remote attackers to execute arbitrary programs via a modified directory traversal attack using a URL containing ".." (dot dot) sequences and a filename that ends in "::" which is treated as a .chm file even if it does not have a .chm extension. NOTE: this bug may overlap CVE-2004-0475. | |
Impact: | Remote code execution | |
Affected OS: | Others | |
Reference: | CVE-2003-1041 |
|
Solutions |
---|
Update vendor's patch. |