CVE-2004-1050: Buffer Overflow
Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME vulnerability" or the "HTML Elements Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-1050?
CVE-2004-1050 is considered critical due to the potential for remote code execution.
How do I fix CVE-2004-1050?
To fix CVE-2004-1050, ensure you are using a patched version of Internet Explorer or upgrade to a more secure browser.
What software is affected by CVE-2004-1050?
CVE-2004-1050 affects Internet Explorer 6, alongside various versions of Avaya IP600 Media Servers.
Can CVE-2004-1050 be exploited remotely?
Yes, CVE-2004-1050 can be exploited remotely through crafted HTML containing malicious IFRAME or FRAME elements.
What are the implications of CVE-2004-1050?
If exploited, CVE-2004-1050 can allow attackers to execute arbitrary code, potentially compromising the affected system.