The Web Folder component for Internet Explorer 5.5 and 6.0 writes an error message to a known location in the temporary folder, which allows remote attackers to execute arbitrary code by injecting it into the error message, then referring to the error message file via a mhtml: URL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Internet_explorer | Microsoft | 5.5 (including) | 5.5 (including) |
Internet_explorer | Microsoft | 5.5-sp1 (including) | 5.5-sp1 (including) |
Internet_explorer | Microsoft | 5.5-sp2 (including) | 5.5-sp2 (including) |
Internet_explorer | Microsoft | 6.0 (including) | 6.0 (including) |