CVE-2004-0841
MEDIUM 5.0EPSS 48.7%
Internet Explorer 6.x allows remote attackers to install arbitrary programs via mousedown events that call the Popup.show method and use drag-and-drop actions in a popup window, aka "HijackClick 3" and the "Script in Image Tag File Download Vulnerability."
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N - EPSS
- 48.73% chance of exploitation in the next 30 days, 99th percentile
- Published
- 2004-09-14
- Updated
- 2024-08-08