CVE-2004-2090
MEDIUM 5.0EPSS 16.0%
Microsoft Internet Explorer 5.0.1 through 6.0 allows remote attackers to determine the existence of arbitrary files via the VBScript LoadPicture method, which returns an error code if the file does not exist.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N - EPSS
- 16.02% chance of exploitation in the next 30 days, 97th percentile
- Published
- 2005-05-19
- Updated
- 2024-08-08