CVE-2004-0122

Microsoft MSN Messenger 6.0-6.1 - Info Disclosure

Title source: llm
STIX 2.1

Description

Microsoft MSN Messenger 6.0 and 6.1 does not properly handle certain requests, which allows remote attackers to read arbitrary files.

References (6)

Core 6
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9828
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/688094
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15427
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A844
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15415

Scores

EPSS 0.2247
EPSS Percentile 97.5%

Details

Status published
Products (2)
microsoft/msn_messenger 6.0
microsoft/msn_messenger 6.1
Published Apr 15, 2004
Tracked Since Feb 18, 2026