CVE-2004-2307

Microsoft Internet Explorer 6.0.2600 - DoS

Title source: llm
STIX 2.1

Description

Microsoft Internet Explorer 6.0.2600 on Windows XP allows remote attackers to cause a denial of service (browser crash) via a shell: URI with double backslashes (\\) in an HTML tag such as IFRAME or A.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/15544
Exploit, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/358043
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9924

Scores

EPSS 0.1454
EPSS Percentile 96.3%

Details

Status published
Products (2)
microsoft/internet_explorer 6.0.2600
microsoft/windows_xp (4 CPE variants)
Published Dec 31, 2004
Tracked Since Feb 18, 2026