PT-2005-1176 · Microsoft · Internet Explorer

Jouko Pynnã¶Nen

·

Published

2005-02-08

·

Updated

2021-07-23

·

CVE-2005-0056

CVSS v2.0

5.1

Medium

VectorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Internet Explorer versions 5.01, 5.5, and 6
Description The issue allows remote attackers to obtain sensitive information or execute arbitrary code due to improper validation of certain URLs in Channel Definition Format (CDF) files.
Recommendations For Internet Explorer version 5.01, update to a version that properly validates URLs in CDF files. For Internet Explorer version 5.5, update to a version that properly validates URLs in CDF files. For Internet Explorer version 6, update to a version that properly validates URLs in CDF files.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0056

Affected Products

Internet Explorer