CVE-2000-0767

Internet Explorer <5.x - Info Disclosure

Title source: llm
STIX 2.1

Description

The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the "Scriptlet Rendering" vulnerability.

References (2)

Core 2
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1564

Scores

EPSS 0.0436
EPSS Percentile 90.3%

Details

Status published
Products (4)
microsoft/internet_explorer 4.0
microsoft/internet_explorer 5.0
microsoft/internet_explorer 5.01
microsoft/internet_explorer 5.5
Published Oct 20, 2000
Tracked Since Feb 18, 2026