2.6

CVE-2000-0768

A function in Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a variant of the "Frame Domain Verification" vulnerability.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftIe Version4.0 Editionwindows_98
MicrosoftIe Version4.0 Editionwindows_nt
MicrosoftIe Version5.0 Editionwindows
MicrosoftIe Version5.0 Editionwindows_2000
MicrosoftIe Version5.0 Editionwindows_95
MicrosoftIe Version5.0 Editionwindows_98
MicrosoftInternet Explorer Version4.0
MicrosoftInternet Explorer Version5.01
MicrosoftInternet Explorer Version5.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 16.32% 0.942
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.6 4.9 2.9
AV:N/AC:H/Au:N/C:P/I:N/A:N