CVE-2004-0978
15Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 38%
exploitation probability
38%top 2% of all CVEs
observed exploitation
nono source reports it
Heap-based buffer overflow in the Hrtbeat.ocx (Heartbeat) ActiveX control for Internet Explorer 5.01 through 6, when users who visit online gaming sites that are associated with MSN, allows remote attackers to execute arbitrary code via the SetupData parameter.
Affected products
n/a · n/aReferences
http://marc.info/?l=bugtraq&m=110616221411579&w=2https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-038https://exchange.xforce.ibmcloud.com/vulnerabilities/17714http://www.kb.cert.org/vuls/id/673134http://www.ngssoftware.com/advisories/heartbeatfull.txthttp://www.securityfocus.com/bid/11367