Vulnerability Description
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.
CVSS Score
HIGH
References
- http://marc.info/?l=bugtraq&m=91745430007021&w=2
- http://marc.info/?l=ntbugtraq&m=91756771207719&w=2
- http://marc.info/?l=bugtraq&m=91745430007021&w=2
- http://marc.info/?l=ntbugtraq&m=91756771207719&w=2
FAQ
What is CVE-1999-0347?
CVE-1999-0347 is a vulnerability with a CVSS score of 10.0 (HIGH). Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified a...
How severe is CVE-1999-0347?
CVE-1999-0347 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0347?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.