← back
CVE-2003-1041observed exploitation

CVE-2003-1041

57Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.

ssvc Actepss 53%
from disclosure to weapon0 days
Published on NVDMay 20
1st PoCDec 30
VulnCheck+54d
exploitation probability
53%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Internet Explorer 5.x and 6.0 allows remote attackers to execute arbitrary programs via a modified directory traversal attack using a URL containing ".." (dot dot) sequences and a filename that ends in "::" which is treated as a .chm file even if it does not have a .chm extension. NOTE: this bug may overlap CVE-2004-0475.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.