CVE Vulnerabilities

CVE-2002-0723

Published: Sep 24, 2002 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka Cross Domain Verification in Object Tag.

Affected Software

Name Vendor Start Version End Version
Internet_explorer Microsoft 5.5 (including) 5.5 (including)
Internet_explorer Microsoft 5.5-sp1 (including) 5.5-sp1 (including)
Internet_explorer Microsoft 5.5-sp2 (including) 5.5-sp2 (including)
Internet_explorer Microsoft 6.0 (including) 6.0 (including)

References