10
CVE-2004-0978
- EPSS 48.51%
- Veröffentlicht 09.02.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
Heap-based buffer overflow in the Hrtbeat.ocx (Heartbeat) ActiveX control for Internet Explorer 5.01 through 6, when users who visit online gaming sites that are associated with MSN, allows remote attackers to execute arbitrary code via the SetupData parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version5.01 Updatesp3
Microsoft ≫ Internet Explorer Version5.01 Updatesp4
Microsoft ≫ Internet Explorer Version5.5 Updatesp2
Microsoft ≫ Internet Explorer Version6 Update-
Microsoft ≫ Windows Server 2003 Version-
Microsoft ≫ Windows Server 2003 Version- HwPlatformx64
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Update- HwPlatformx64
Microsoft ≫ Windows Xp Version- Updatesp1
Microsoft ≫ Windows Xp Version- Updatesp2
Microsoft ≫ Windows Server 2003 Version- HwPlatformx64
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Update- HwPlatformx64
Microsoft ≫ Windows Xp Version- Updatesp1
Microsoft ≫ Windows Xp Version- Updatesp2
Microsoft ≫ Internet Explorer Version6 Updatesp1
Microsoft ≫ Windows 2000 Version- Updatesp3
Microsoft ≫ Windows 2000 Version- Updatesp4
Microsoft ≫ Windows 98se Version-
Microsoft ≫ Windows Me Version-
Microsoft ≫ Windows Nt Version4.0 Updatesp6 SwEditionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6a
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Updatesp1
Microsoft ≫ Windows 2000 Version- Updatesp4
Microsoft ≫ Windows 98se Version-
Microsoft ≫ Windows Me Version-
Microsoft ≫ Windows Nt Version4.0 Updatesp6 SwEditionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6a
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Updatesp1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 48.51% | 0.977 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.