CVE-2004-0479: Medium severity Microsoft ie vulnerability
Published May 20, 2004
·Updated
Internet Explorer 6 allows remote attackers to cause a denial of service (crash) via Javascript that creates a new popup window and disables the imagetoolbar functionality with a META tag, which triggers a null dereference.
Affected Software
1 affected component
Microsoft ie=6-windows_server_2003_sp1
Event History
May 20, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0479?
CVE-2004-0479 is classified as a denial of service vulnerability.
2
How do I fix CVE-2004-0479?
To mitigate CVE-2004-0479, users should update to a more secure version of Internet Explorer or implement alternative browser solutions.
3
Which versions of Internet Explorer are affected by CVE-2004-0479?
CVE-2004-0479 specifically affects Internet Explorer 6 on Windows Server 2003 SP1.
4
What attack vector is used in CVE-2004-0479?
CVE-2004-0479 can be exploited through malicious Javascript that creates popup windows.
5
What is the impact of exploiting CVE-2004-0479?
Exploiting CVE-2004-0479 can cause the Internet Explorer browser to crash, resulting in a denial of service.