CVE-2003-0447

The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a "javascript:" link to be generated.

Scoring

CVSS base score
1.46
EPSS probability
36.58%
Published
2003-06-20
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs