CVE-2004-0474

Help Center (HelpCtr.exe) may allow remote attackers to read or execute arbitrary files via an "http://" or "; argument to the topic parameter in an hcp:// URL. NOTE: since the initial report of this problem, several researchers have been unable to reproduce this issue.

Date published : 2004-05-20

http://www.securityfocus.com/bid/9621

http://www.securityfocus.com/archive/1/353248