CVE-2004-0475

Internet Explorer 6 on Windows XP Pro - RCE

Title source: llm
STIX 2.1

Description

The showHelp function in Internet Explorer 6 on Windows XP Pro allows remote attackers to execute arbitrary local .CHM files via a double backward slash ("\\") before the target CHM file, as demonstrated using an "ms-its" URL to ntshared.chm. NOTE: this bug may overlap CVE-2003-1041.

References (3)

Core 3
Core References
Exploit, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/10348
Exploit, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/363202
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/16147

Scores

EPSS 0.1003
EPSS Percentile 95.2%

Details

Status published
Products (1)
microsoft/ie 6.0 sp1
Published Jul 07, 2004
Tracked Since Feb 18, 2026