Vulnerability Name: | CVE-2005-1191 (CCN-20380) | ||||||||
Assigned: | 2005-05-02 | ||||||||
Published: | 2005-05-02 | ||||||||
Updated: | 2019-04-30 | ||||||||
Summary: | The Web View DLL (webvw.dll), as used in Windows Explorer on Windows 2000 systems, does not properly filter an apostrophe ("'") in the author name in a document, which allows attackers to execute arbitrary script via extra attributes when Web View constructs a mailto: link for the preview pane when the user selects the file. | ||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2005-1191 Source: MISC Type: Exploit, Patch http://security.greymagic.com/security/advisories/gm015-ie Source: CCN Type: CIAC INFORMATION BULLETIN P-202 Web View in Windows Explorer Vulnerability Source: CCN Type: GreyMagic Security Advisory GM#015-IE File Selection May Lead to Command Execution. Source: CCN Type: US-CERT VU#668916 Microsoft Windows Explorer vulnerable to script injection via the Web View DLL Source: CCN Type: Microsoft Security Bulletin MS05-024 Vulnerability in Web View Could Allow Remote Code Execution (894320) Source: CCN Type: Microsoft Security Bulletin MS05-049 Vulnerabilities in Windows Shell Could Allow Remote Code Execution (900725) Source: CCN Type: OSVDB ID: 15707 Microsoft Windows Explorer Web View Arbitrary Script Insertion Source: BUGTRAQ Type: Exploit 20050419 File Selection May Lead to Command Execution (GM#015-IE) Source: BID Type: Exploit, Patch, Vendor Advisory 13248 Source: CCN Type: BID-13248 Microsoft Windows Explorer Preview Pane Script Injection Vulnerability Source: VUPEN Type: UNKNOWN ADV-2005-0509 Source: MS Type: UNKNOWN MS05-024 Source: XF Type: UNKNOWN windows-web-view-command-execution(20380) Source: XF Type: UNKNOWN windows-web-view-command-execution(20380) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:3585 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |