PT-1999-1036 · Microsoft · Internet Explorer

Published

1999-01-26

·

Updated

2016-10-18

·

CVE-1999-0347

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Internet Explorer version 4.01
Description The issue allows remote attackers to read local files and spoof web pages. This is achieved by using a "%01" character in an "about:" Javascript URL, causing the browser to use the domain specified after the character.
Recommendations For Internet Explorer version 4.01, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-1999-0347

Affected Products

Internet Explorer