CVE-2005-1191

Windows Explorer < Windows 2000 - XSS

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-1191. PoCs published by GreyMagic Software.

AI-analyzed exploit summary The provided text describes a script injection vulnerability in Microsoft Windows Explorer's preview pane (Web View) on Windows 2000, 98, 98SE, and ME. It references ExploitDB entry 25454 and includes links to malicious .doc files designed to exploit this vulnerability.

Description

The Web View DLL (webvw.dll), as used in Windows Explorer on Windows 2000 systems, does not properly filter an apostrophe ("'") in the author name in a document, which allows attackers to execute arbitrary script via extra attributes when Web View constructs a mailto: link for the preview pane when the user selects the file.

Exploits (1)

exploitdb WRITEUP VERIFIED
by GreyMagic Software · textremotewindows
https://www.exploit-db.com/exploits/25454

The provided text describes a script injection vulnerability in Microsoft Windows Explorer's preview pane (Web View) on Windows 2000, 98, 98SE, and ME. It references ExploitDB entry 25454 and includes links to malicious .doc files designed to exploit this vulnerability.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Microsoft Windows Explorer (Windows 2000, 98, 98SE, ME)
No auth needed
Prerequisites: Windows Explorer preview pane (Web View) enabled · User interaction to select a malicious file
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Exploit mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/396224
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/13248
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/0509
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/20380
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3585

Scores

EPSS 0.1711
EPSS Percentile 96.7%

Details

Status published
Products (4)
microsoft/windows_2000 (5 CPE variants)
microsoft/windows_98
microsoft/windows_98se
microsoft/windows_me
Published May 02, 2005
Tracked Since Feb 18, 2026