CVE-2005-0820

Microsoft Office InfoPath 2003 SP1 includes sensitive information in the Manifest.xsf file in a custom .xsn form, which allows attackers to obtain printer and network information, obtain the database name, username, and password, or obtain the internal web server name.
Configurations

Configuration 1 (hide)

cpe:2.3:a:microsoft:office_infopath:2003:sp1:*:*:*:*:*:*

History

20 Nov 2024, 23:55

Type Values Removed Values Added
References () http://securitytracker.com/id?1013454 - () http://securitytracker.com/id?1013454 -
References () http://support.microsoft.com/kb/867443 - Vendor Advisory () http://support.microsoft.com/kb/867443 - Vendor Advisory
References () http://www.osvdb.org/14882 - () http://www.osvdb.org/14882 -
References () http://www.securityfocus.com/bid/12824 - () http://www.securityfocus.com/bid/12824 -

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:55


NVD link : CVE-2005-0820

Mitre link : CVE-2005-0820

CVE.ORG link : CVE-2005-0820


JSON object : View

Products Affected

microsoft

  • office_infopath