CVE-2004-1166 | Microsoft Internet Explorer up to 6 FTP URI code injection (MS06-042 / EDB-24800)
A vulnerability was found in Microsoft Internet Explorer up to 6. It has been classified as critical. This issue affects some unknown processing of the component FTP URI Handler. This manipulation with the input %0A causes code injection.
This vulnerability is tracked as CVE-2004-1166. The attack is possible to be carried out remotely. Moreover, an exploit is present.
It is advisable to implement restrictive firewalling.