CVE-2002-0024

Internet Explorer <6.0 - Info Disclosure

Title source: llm
STIX 2.1

Description

File Download box in Internet Explorer 5.01, 5.5 and 6.0 allows an attacker to use the Content-Disposition and Content-Type HTML header fields to modify how the name of the file is displayed, which could trick a user into believing that a file is safe to download.

References (2)

Core 2
Core References
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4087

Scores

EPSS 0.0433
EPSS Percentile 90.3%

Details

Status published
Products (3)
microsoft/internet_explorer 5.01
microsoft/internet_explorer 5.5
microsoft/internet_explorer 6.0
Published Mar 08, 2002
Tracked Since Feb 18, 2026