Lucene search

K
cve[email protected]CVE-2005-2117
HistoryOct 21, 2005 - 6:02 p.m.

CVE-2005-2117

2005-10-2118:02:00
web.nvd.nist.gov
69
cve-2005-2117
windows
explorer
html
remote code execution
nvd

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

7.2 High

AI Score

Confidence

High

0.839 High

EPSS

Percentile

98.5%

Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.

Affected configurations

NVD
Node
microsoftwindows_explorer
Node
microsoftwindows_2000sp4fr
OR
microsoftwindows_2003_serverMatchr2
OR
microsoftwindows_xpsp1tablet_pc
OR
microsoftwindows_xpsp2tablet_pc

5.1 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

7.2 High

AI Score

Confidence

High

0.839 High

EPSS

Percentile

98.5%

Related for CVE-2005-2117