Description
Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security, aka the "Cross Frame Navigate" vulnerability.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/7837
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/3668
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-013
Scores
EPSS
0.1216
EPSS Percentile
95.8%
Details
Status
published
Products (2)
microsoft/internet_explorer
4.0
microsoft/internet_explorer
4.0.1
Published
Sep 04, 1998
Tracked Since
Feb 18, 2026