Description
Microsoft Internet Explorer 5.0 through 6.0 allows attackers to cause a denial of service (browser crash) via a crafted FTP URL such as "/.#./".
References (3)
Core 3
Core References
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/199408
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/10117
Exploit mailing-list
x_refsource_bugtraq
http://cert.uni-stuttgart.de/archive/vuln-dev/2001/05/msg00029.html
Scores
EPSS
0.0697
EPSS Percentile
93.5%
Details
Status
published
Products (4)
microsoft/internet_explorer
5.0
microsoft/internet_explorer
5.0.1 (3 CPE variants)
microsoft/internet_explorer
5.5 (3 CPE variants)
microsoft/internet_explorer
6.0
Published
May 11, 2001
Tracked Since
Feb 18, 2026