4.3

CVE-1999-0877

Internet Explorer 5 allows remote attackers to read files via an ExecCommand method called on an IFRAME.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version 4.01
Microsoft ≫ Internet Explorer Version 4.01 Update sp1
Microsoft ≫ Internet Explorer Version 5.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 17.67% 0.968
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ243638
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-042