CVE-2003-0809

Internet Explorer 5.01 through 6.0 does not properly handle object tags returned from a Web server during XML data binding, which allows remote attackers to execute arbitrary code via an HTML e-mail message or web page.

Scoring

CVSS base score
1.82
EPSS probability
45.45%
Published
2003-10-08
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs