CVE-1999-1128

Internet Explorer 3.01 - Remote Code Execution via .isp File Download

Title source: llm
STIX 2.1

Description

Internet Explorer 3.01 on Windows 95 allows remote malicious web sites to execute arbitrary commands via a .isp file, which is automatically downloaded and executed without prompting the user.

References (2)

Core 2
Core References
Various Sources x_refsource_misc
http://oliver.efri.hr/~crv/security/bugs/NT/ie3.html
Various Sources x_refsource_misc
http://members.tripod.com/~unibyte/iebug3.htm

Scores

EPSS 0.0362
EPSS Percentile 88.4%

Details

Status published
Products (1)
microsoft/internet_explorer 3.0.1
Published Mar 01, 1997
Tracked Since Feb 18, 2026