CVE-2001-0338

Internet Explorer 5.5 and earlier does not properly validate digital certificates when Certificate Revocation List (CRL) checking is enabled, which could allow remote attackers to spoof trusted web sites, aka the "Server certificate validation vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.01:*:*:*:*:*:*:*

History

20 Nov 2024, 23:35

Type Values Removed Values Added
References () http://www.ciac.org/ciac/bulletins/l-087.shtml - () http://www.ciac.org/ciac/bulletins/l-087.shtml -
References () http://www.securityfocus.com/bid/2735 - () http://www.securityfocus.com/bid/2735 -
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-027 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-027 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/6555 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/6555 -

Information

Published : 2001-06-27 04:00

Updated : 2024-11-20 23:35


NVD link : CVE-2001-0338

Mitre link : CVE-2001-0338

CVE.ORG link : CVE-2001-0338


JSON object : View

Products Affected

microsoft

  • internet_explorer