CVE-1999-1578

Internet Explorer 4.01 and 5 - Remote Code Execution via Registration Wizard ActiveX Control

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-1578. PoCs published by Shane Hird.

AI-analyzed exploit summary This is a functional exploit for a buffer overflow vulnerability in the Internet Explorer Registration Wizard control (regwizc.dll). It leverages a long string with a '/i' prefix to overflow the buffer, overwrite the return address, and execute arbitrary commands (e.g., CALC.EXE) via shellcode.

Description

Buffer overflow in Registration Wizard ActiveX control (regwizc.dll, InvokeRegWizard) 3.0.0.0 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Shane Hird · textlocalwindows
https://www.exploit-db.com/exploits/19528

This is a functional exploit for a buffer overflow vulnerability in the Internet Explorer Registration Wizard control (regwizc.dll). It leverages a long string with a '/i' prefix to overflow the buffer, overwrite the return address, and execute arbitrary commands (e.g., CALC.EXE) via shellcode.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Internet Explorer 4.1/5.0 for Windows 95/Windows NT 4, Windows 98
No auth needed
Prerequisites: Victim must visit a malicious webpage hosting the exploit · Target system must have vulnerable version of Internet Explorer and regwizc.dll
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit, Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/37556
Exploit, Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/671
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/28719
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/3311

Scores

EPSS 0.1944
EPSS Percentile 97.0%

Details

Status published
Products (2)
microsoft/internet_explorer 4.0.1
microsoft/internet_explorer 5.0
Published Sep 24, 1999
Tracked Since Feb 18, 2026