Security Advisory
CVE-2003-0447
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Custom HTTP Errors capability in Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to execute script in the Local Zone via an argument to shdocvw.dll that causes a "javascript:" link to be generated.