Beveiligingsadvies

CVE-2003-1028

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2004-01-08 05:00:00
Laatst bijgewerkt 2024-08-08 02:12:35
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The download function of Internet Explorer 6 SP1 allows remote attackers to obtain the cache directory name via an HTTP response with an invalid ContentType and a .htm file, which could allow remote attackers to bypass security mechanisms that rely on random names, as demonstrated by threadid10008.