Internet Explorer 6 SP1 and earlier allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by calling the window.moveBy method, aka HijackClick, a different vulnerability than CVE-2003-1027.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.26
EPSS Ranking 97.8%