CVE-2005-2117

medium Microsoft
CVSS v3 Base Score
5.1
AV:N/AC:H/Au:N/C:P/I:P/A:P
EPSS Score
46.5%
Exploitation probability in 30 days
Top 2% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
High
Confidentiality
P
Integrity
P
Availability
P
Published: October 21, 2005 (7509 days ago)
Last Modified: April 16, 2026
Vendor: Microsoft
Source: NVD

Description

Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.

CWE

NVD-CWE-Other

Affected Products

microsoft windows explorermicrosoft windows 2000microsoft windows 2003 servermicrosoft windows xp

References