CVE Vulnerabilities

CVE-2002-0723

Published: Sep 24, 2002 | Modified: Jul 23, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka Cross Domain Verification in Object Tag.

Affected Software

Name Vendor Start Version End Version
Internet_explorer Microsoft 5.5 (including) 5.5 (including)
Internet_explorer Microsoft 5.5-sp1 (including) 5.5-sp1 (including)
Internet_explorer Microsoft 5.5-sp2 (including) 5.5-sp2 (including)
Internet_explorer Microsoft 6.0 (including) 6.0 (including)

References