CVE-2004-0284
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/11/2004
Last modified:
03/04/2025
Description
Microsoft Internet Explorer 6.0, Outlook 2002, and Outlook 2003 allow remote attackers to cause a denial of service (CPU consumption), if "Do not save encrypted pages to disk" is disabled, via a web site or HTML e-mail that contains two null characters (%00) after the host name.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:* | ||
cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook:2002:*:*:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook:2002:sp1:*:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook:2002:sp2:*:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook:2003:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page