Back
CVE-2003-0115
Microsoft Internet Explorer 5.01, 5.5 and 6.0 does not properly check parameters that are passed during third party rendering, which could allow remote attackers to execute arbitrary web script, aka the "Third Party Plugin Rendering" vulnerability, a different vulnerability than CVE-2003-0233.
Published: May 12, 2003
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (9)
| Vendor | Product | Version |
|---|---|---|
| microsoft | ie | 6.0 |
| microsoft | internet_explorer | 5.0.1 |
| microsoft | internet_explorer | 5.0.1 |
| microsoft | internet_explorer | 5.0.1 |
| microsoft | internet_explorer | 5.0.1 |
| microsoft | internet_explorer | 5.5 |
| microsoft | internet_explorer | 5.5 |
| microsoft | internet_explorer | 5.5 |
| microsoft | internet_explorer | 6.0 |
GitHub Security Advisory GHSA-rcwm-qwrf-r7p7
Microsoft Internet Explorer 5.01, 5.5 and 6.0 does not properly check parameters that are passed...
References (4)
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
11.58%
Top 4% most likely to be exploited
Threat Score
33.5 / 100
Data Sources
NVD
EPSS
GitHub