Back

CVE-2003-0115

Microsoft Internet Explorer 5.01, 5.5 and 6.0 does not properly check parameters that are passed during third party rendering, which could allow remote attackers to execute arbitrary web script, aka the "Third Party Plugin Rendering" vulnerability, a different vulnerability than CVE-2003-0233.

Published: May 12, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (9)

Vendor Product Version
microsoft ie 6.0
microsoft internet_explorer 5.0.1
microsoft internet_explorer 5.0.1
microsoft internet_explorer 5.0.1
microsoft internet_explorer 5.0.1
microsoft internet_explorer 5.5
microsoft internet_explorer 5.5
microsoft internet_explorer 5.5
microsoft internet_explorer 6.0

GitHub Security Advisory GHSA-rcwm-qwrf-r7p7

Microsoft Internet Explorer 5.01, 5.5 and 6.0 does not properly check parameters that are passed...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 11.58%

Top 4% most likely to be exploited

Threat Score 33.5 / 100

Data Sources

NVD EPSS GitHub