CVE-1999-0347: Critical severity Microsoft Internet Explorer vulnerability
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0347?
CVE-1999-0347 is classified as a critical vulnerability due to its potential for remote file reading and spoofing attacks.
How do I fix CVE-1999-0347?
To fix CVE-1999-0347, users should upgrade to a newer version of Internet Explorer that is not affected by this vulnerability.
What type of attacks can be performed using CVE-1999-0347?
Attackers can exploit CVE-1999-0347 to read local files and spoof web pages, potentially leading to information disclosure.
Are all versions of Internet Explorer affected by CVE-1999-0347?
CVE-1999-0347 specifically affects Internet Explorer 4.01 and may not impact later versions.
What should I do if I cannot update Internet Explorer to mitigate CVE-1999-0347?
If updating is not possible, avoid using Internet Explorer 4.01 for browsing and consider using an alternative browser.