Description
Internet Explorer 5.5 and 6.0 allows remote attackers to steal potentially sensitive information from cookies via a cookie that contains script which is executed when a page is loaded, aka the "Script within Cookies Reading Cookies" vulnerability.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-023
Scores
EPSS
0.1165
EPSS Percentile
95.6%
Details
Status
published
Products (3)
microsoft/internet_explorer
5.01
microsoft/internet_explorer
5.5
microsoft/internet_explorer
6.0
Published
Jun 09, 2003
Tracked Since
Feb 18, 2026