10
CVE-2004-0978
- EPSS 48.51%
- Published 09.02.2005 05:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Heap-based buffer overflow in the Hrtbeat.ocx (Heartbeat) ActiveX control for Internet Explorer 5.01 through 6, when users who visit online gaming sites that are associated with MSN, allows remote attackers to execute arbitrary code via the SetupData parameter.
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version5.01 Updatesp3
Microsoft ≫ Internet Explorer Version5.01 Updatesp4
Microsoft ≫ Internet Explorer Version5.5 Updatesp2
Microsoft ≫ Internet Explorer Version6 Update-
Microsoft ≫ Windows Server 2003 Version-
Microsoft ≫ Windows Server 2003 Version- HwPlatformx64
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Update- HwPlatformx64
Microsoft ≫ Windows Xp Version- Updatesp1
Microsoft ≫ Windows Xp Version- Updatesp2
Microsoft ≫ Windows Server 2003 Version- HwPlatformx64
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Update- HwPlatformx64
Microsoft ≫ Windows Xp Version- Updatesp1
Microsoft ≫ Windows Xp Version- Updatesp2
Microsoft ≫ Internet Explorer Version6 Updatesp1
Microsoft ≫ Windows 2000 Version- Updatesp3
Microsoft ≫ Windows 2000 Version- Updatesp4
Microsoft ≫ Windows 98se Version-
Microsoft ≫ Windows Me Version-
Microsoft ≫ Windows Nt Version4.0 Updatesp6 SwEditionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6a
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Updatesp1
Microsoft ≫ Windows 2000 Version- Updatesp4
Microsoft ≫ Windows 98se Version-
Microsoft ≫ Windows Me Version-
Microsoft ≫ Windows Nt Version4.0 Updatesp6 SwEditionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6a
Microsoft ≫ Windows Xp Version-
Microsoft ≫ Windows Xp Version- Updatesp1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 48.51% | 0.977 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.