CVE Vulnerabilities

CVE-2000-0767

Published: Oct 20, 2000 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the Scriptlet Rendering vulnerability.

Affected Software

NameVendorStart VersionEnd Version
Internet_explorerMicrosoft4.0 (including)4.0 (including)
Internet_explorerMicrosoft5.0 (including)5.0 (including)
Internet_explorerMicrosoft5.01 (including)5.01 (including)
Internet_explorerMicrosoft5.5 (including)5.5 (including)

References