CyberSec.Space Logo
Back to CVE Browser

CVE-2004-0216

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1200%
EPSS Percentile33.32th
PublishedNov 3, 2004
Last ModifiedApr 16, 2026

Vulnerability Description

Integer overflow in the Install Engine (inseng.dll) for Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via a malicious website or HTML email with a long .CAB file name, which triggers the integer overflow when calculating a buffer length and leads to a heap-based buffer overflow.

Affected Platforms (CPE)

πŸ“¦
Microsoft

Ie

= 6
πŸ“¦
Microsoft

Internet Explorer

= 5.01
πŸ“¦
Microsoft

Internet Explorer

= 5.5

References & Advisories

Related Vulnerabilities