CVE-2001-0092

Internet Explorer <5.6 - Info Disclosure

Title source: llm
STIX 2.1

Description

A function in Internet Explorer 5.0 through 5.5 does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a new variant of the "Frame Domain Verification" vulnerability.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6086
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/7817

Scores

EPSS 0.1221
EPSS Percentile 95.8%

Details

Status published
Products (3)
microsoft/internet_explorer 5.0
microsoft/internet_explorer 5.01
microsoft/internet_explorer 5.5
Published Feb 16, 2001
Tracked Since Feb 18, 2026