Exploitation Summary
EIP tracks 1 public exploit for CVE-1999-0347. PoCs published by Georgi Guninski.
AI-analyzed exploit summary This is a vulnerability writeup describing a cross-frame security bypass in Internet Explorer 4.x and 5.5, allowing arbitrary code execution via malformed URLs with '%01' or equivalent characters. No actual exploit code is provided.
Description
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.
Exploits (1)
This is a vulnerability writeup describing a cross-frame security bypass in Internet Explorer 4.x and 5.5, allowing arbitrary code execution via malformed URLs with '%01' or equivalent characters. No actual exploit code is provided.