PT-2002-1129 · Microsoft · Internet Explorer

Published

2002-03-08

·

Updated

2021-07-23

·

CVE-2002-0027

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Internet Explorer versions 5.5 through 6.0
Description The issue allows remote attackers to read certain files and spoof the URL in the address bar. This is achieved by using the Document.open function to pass information between two frames from different domains, which is a new variant of the "Frame Domain Verification" vulnerability.
Recommendations For Internet Explorer versions 5.5 through 6.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-0027

Affected Products

Internet Explorer