Description
Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and read arbitrary files by (1) modifying the createTextRange method and using CreateLink, as demonstrated using LinkillerSaveRef, LinkillerJPU, and Linkiller, or (2) modifying the createRange method and using the FIND dialog to select text, as demonstrated using Findeath, aka the "Function Pointer Override Cross Domain" vulnerability.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T02:05:12.551Z
Reserved: 2003-09-18T00:00:00.000Z
Link: CVE-2003-0815
No data.
Status : Modified
Published: 2004-02-03T05:00:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2003-0815
No data.
OpenCVE Enrichment
No data.
Weaknesses