← back
CVE-2004-0216

CVE-2004-0216

15Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 49%
exploitation probability
49%top 1% of all CVEs
observed exploitation
nono source reports it
Integer overflow in the Install Engine (inseng.dll) for Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via a malicious website or HTML email with a long .CAB file name, which triggers the integer overflow when calculating a buffer length and leads to a heap-based buffer overflow.
Affected products
n/a · n/a