Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.
References
Configurations
History
20 Nov 2024, 23:30
Type | Values Removed | Values Added |
---|---|---|
References | () http://ntbugtraq.ntadvice.com/default.asp?pid=36&sid=1&A2=ind9904&L=NTBUGTRAQ&P=R179 - | |
References | () http://packetderm.cotse.com/mailing-lists/ntbugtraq/1999/0364.html - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/3289 - |
Information
Published : 1999-08-25 04:00
Updated : 2024-11-20 23:30
NVD link : CVE-1999-1235
Mitre link : CVE-1999-1235
CVE.ORG link : CVE-1999-1235
JSON object : View
Products Affected
microsoft
- internet_explorer
CWE