Internet Explorer 5.5 and 6.0 allows remote attackers to read certain files and spoof the URL in the address bar by using the Document.open function to pass information between two frames from different domains, a new variant of the "Frame Domain Verification" vulnerability described in MS:MS01-058/CAN-2001-0874.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2002-06-25T04:00:00
Updated: 2024-08-08T02:35:17.425Z
Reserved: 2002-01-14T00:00:00
Link: CVE-2002-0027
Vulnrichment
No data.
NVD
Status : Modified
Published: 2002-03-08T05:00:00.000
Modified: 2024-11-20T23:38:07.410
Link: CVE-2002-0027
Redhat
No data.