CVE-2002-0696

Microsoft Visual FoxPro 6.0 - Remote Code Execution via HTML File Reference

Title source: llm
STIX 2.1

Description

Microsoft Visual FoxPro 6.0 does not register its associated files with Internet Explorer, which allows remote attackers to execute Visual FoxPro applications without warning via HTML that references specially-crafted filenames.

References (4)

Core 4
Core References
Third Party Advisory, US Government Resource third-party-advisory government-resource x_refsource_ciac
http://www.ciac.org/ciac/bulletins/m-120.shtml
Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/10035.php
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/5633

Scores

EPSS 0.1170
EPSS Percentile 95.7%

Details

Status published
Products (1)
microsoft/visual_foxpro 6.0
Published Oct 04, 2002
Tracked Since Feb 18, 2026