CVE-2001-0246

Internet Explorer <5.5 - Info Disclosure

Title source: llm
STIX 2.1

Description

Internet Explorer 5.5 and earlier does not properly verify the domain of a frame within a browser window, which allows remote web site operators to read certain files on the client by sending information from a local frame to a frame in a different domain, aka a variant of the "Frame Domain Verification" vulnerability.

References (1)

Core 1
Core References

Scores

EPSS 0.0565
EPSS Percentile 92.2%

Details

Status published
Products (2)
microsoft/internet_explorer 5.01
microsoft/internet_explorer < 5.5
Published Jun 27, 2001
Tracked Since Feb 18, 2026