Vulnerabilities > CVE-2000-0465 - Unspecified vulnerability in Microsoft Internet Explorer

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
microsoft
exploit available

Summary

Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files via the frame, aka the "Frame Domain Verification" vulnerability.

Exploit-Db

descriptionInternet Explorer 4.0/5.0/5.5 preview/5.0.1 DocumentComplete() Cross Frame Access Vulnerability. CVE-2000-0465. Remote exploit for windows platform
idEDB-ID:19939
last seen2016-02-02
modified2000-05-17
published2000-05-17
reporterAndrew Nosenko
sourcehttps://www.exploit-db.com/download/19939/
titleMicrosoft Internet Explorer 4.0/5.0/5.5 preview/5.0.1 - DocumentComplete Cross Frame Access Vulnerability