Description
Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to access and execute script in the My Computer domain using the browser cache via crafted Content-Type and Content-Disposition headers, aka the "Browser Cache Script Execution in My Computer Zone" vulnerability.
References (7)
Core 7
Core References
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/9580
US Government Resource third-party-advisory
x_refsource_cert
http://www.cert.org/advisories/CA-2003-22.html
Various Sources x_refsource_misc
http://www.lac.co.jp/security/english/snsadv_e/67_e.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/12961
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-032
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/205148
Vendor Advisory vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/8457
Scores
EPSS
0.2650
EPSS Percentile
97.8%
Details
Status
published
Products (4)
microsoft/ie
6.0 sp1
microsoft/internet_explorer
5.0.1 (4 CPE variants)
microsoft/internet_explorer
5.5 (3 CPE variants)
microsoft/internet_explorer
6.0
Published
Aug 27, 2003
Tracked Since
Feb 18, 2026