CVE Vulnerabilities

CVE-2002-0228

Published: May 16, 2002 | Modified: Sep 11, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).

Affected Software

Name Vendor Start Version End Version
Msn_messenger Microsoft 2.2 (including) 2.2 (including)
Msn_messenger Microsoft 3.0 (including) 3.0 (including)
Msn_messenger Microsoft 4.0 (including) 4.0 (including)
Msn_messenger Microsoft 4.5 (including) 4.5 (including)
Msn_messenger Microsoft 4.6 (including) 4.6 (including)

References