CVE Database
/

CVE-2004-1331

Back to search

CVE-2004-1331

Published: Jan 6, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Security Warning" dialog and save arbitrary files with arbitrary extensions via the SaveAs command.

VendorProductVersions

n/a

n/a

affected
n/a

References

3220
third-party-advisory
x_refsource_SREASON
11686
vdb-entry
x_refsource_BID
13203
third-party-advisory
x_refsource_SECUNIA
VU#743974
third-party-advisory
x_refsource_CERT-VN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now