CVE-2005-0553

Microsoft Internet Explorer <6 - Code Injection

Title source: llm

Description

Race condition in the memory management routines in the DHTML object processor in Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via a malicious web page or HTML e-mail, aka "DHTML Object Memory Corruption Vulnerability".

Exploits (1)

exploitdb WRITEUP VERIFIED
by Berend-Jan Wever · textremotewindows
https://www.exploit-db.com/exploits/25386

Scores

EPSS 0.7232
EPSS Percentile 98.8%

Details

Status published
Products (4)
microsoft/ie 6.0 sp1
microsoft/internet_explorer 5.01 sp3 (2 CPE variants)
microsoft/internet_explorer 5.5 sp2
microsoft/internet_explorer 6.0
Published May 02, 2005
Tracked Since Feb 18, 2026