PT-2002-1714 · Microsoft · Internet Explorer
Published
2002-09-24
·
Updated
2021-07-23
·
CVE-2002-0691
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 5.01 through 5.5
Description
The issue allows remote attackers to execute scripts in the Local Computer zone via a URL that references a local HTML resource file. This is a variant of Cross-Site Scripting in Local HTML Resource.
Recommendations
For Microsoft Internet Explorer versions 5.01 through 5.5, consider disabling the execution of scripts in the Local Computer zone as a temporary workaround until a patch is available. Restrict access to local HTML resource files to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer