CVE-1999-0488

Internet Explorer 4.0 and 5.0 - Remote Code Execution via Malicious URL

Title source: llm
STIX 2.1

Description

Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.

References (1)

Core 1
Core References

Scores

EPSS 0.1157
EPSS Percentile 95.6%

Details

Status published
Products (3)
microsoft/internet_explorer 4.0
microsoft/internet_explorer 4.0.1 (2 CPE variants)
microsoft/internet_explorer 5.0
Published Apr 21, 1999
Tracked Since Feb 18, 2026