Description
Internet Explorer 5.0, and possibly other versions, may allow remote attackers (malicious web pages) to read known text files from a client's hard drive via a SCRIPT tag with a SRC value that points to the text file.
References (2)
Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6688
Exploit, Vendor Advisory mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/cgi-bin/archive.pl?id=1&mid=189341
Scores
EPSS
0.0697
EPSS Percentile
93.5%
Details
Status
published
Products (1)
microsoft/internet_explorer
5.0
Published
Dec 06, 2001
Tracked Since
Feb 18, 2026