PT-2004-1205 · Microsoft · Internet Explorer
Liu Die Yu
·
Published
2004-01-08
·
Updated
2021-07-23
·
CVE-2003-1027
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Internet Explorer versions 5.01 through 6 SP1
Description
The issue allows remote attackers to manipulate drag and drop behaviors and other mouse click actions by accessing the window.moveBy method through method caching (SaveRef). This can be exploited to direct actions to other windows.
Recommendations
For Internet Explorer versions 5.01 through 6 SP1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer