PoC Index

CVE-2002-0193

HIGH 7.5EPSS 33.3%

Microsoft Internet Explorer 5.01 and 6.0 allow remote attackers to execute arbitrary code via malformed Content-Disposition and Content-Type header fields that cause the application for the spoofed file type to pass the file back to the operating system for handling rather than raise an error message, aka the first variant of the "Content Disposition" vulnerability.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
33.34% chance of exploitation in the next 30 days, 98th percentile
Published
2004-09-01
Updated
2024-08-08

ExploitDB entries (1)

References

Related