PT-2001-2038 · Microsoft · Internet Explorer
Published
2001-12-13
·
Updated
2021-07-23
·
CVE-2001-0874
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Internet Explorer versions 5.5 through 6.0
Description
The issue allows remote attackers to read certain files via HTML that passes information from a frame in the client's domain to a frame in the web site's domain. This is a variant of the "Frame Domain Verification" issue.
Recommendations
For Internet Explorer versions 5.5 through 6.0, consider disabling frames or restricting the use of HTML frames to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer