5
CVE-2002-0228
- EPSS 16.35%
- Veröffentlicht 16.05.2002 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:57:02
- Erkennungen
Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Msn Messenger Version 2.2
Microsoft ≫ Msn Messenger Version 3.0
Microsoft ≫ Msn Messenger Version 4.0
Microsoft ≫ Msn Messenger Version 4.5
Microsoft ≫ Msn Messenger Version 4.6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 16.35% | 0.966 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://online.securityfocus.com/archive/1/254021
http://www.iss.net/security_center/static/8084.php
http://www.securityfocus.com/bid/4028