Internet Explorer 5.5 and 6.0 allows remote attackers to read certain files and spoof the URL in the address bar by using the Document.open function to pass information between two frames from different domains, a new variant of the "Frame Domain Verification" vulnerability described in MS:MS01-058/CAN-2001-0874.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:38
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.osvdb.org/3031 - | |
References | () http://www.securityfocus.com/archive/1/246522 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/3721 - Exploit, Patch, Vendor Advisory | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-005 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A974 - |
Information
Published : 2002-03-08 05:00
Updated : 2024-11-20 23:38
NVD link : CVE-2002-0027
Mitre link : CVE-2002-0027
CVE.ORG link : CVE-2002-0027
JSON object : View
Products Affected
microsoft
- internet_explorer
CWE