← All CVEs

CVE-2004-1331

low · 2.6

The execCommand method in Microsoft Internet Explorer 6.0 SP2 allows remote attackers to bypass the "File Download - Security Warning" dialog and save arbitrary files with arbitrary extensions via the SaveAs command.

2.6
CVSS
19.5%
EPSS (exploit prob.)
97th
EPSS percentile
2004-11-16
Published

AV:N/AC:H/Au:N/C:N/I:P/A:N

Affected products

VendorProductAffected versions
microsoftie6.0
microsoftie6.0
microsoftinternet_explorer6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2004-1331