CVE-2003-0519

Internet Explorer 5 and 6 - Denial of Service via MS-DOS Device Name URL

Title source: llm
STIX 2.1

Description

Certain versions of Internet Explorer 5 and 6, in certain Windows environments, allow remote attackers to cause a denial of service (freeze) via a URL to C:\aux (MS-DOS device name) and possibly other devices.

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_fulldisc
http://lists.grok.org.uk/pipermail/full-disclosure/2003-July/006286.html

Scores

EPSS 0.1083
EPSS Percentile 95.4%

Details

Status published
Products (2)
microsoft/internet_explorer 5.0
microsoft/internet_explorer 6.0
Published Aug 18, 2003
Tracked Since Feb 18, 2026