First published: Wed Apr 21 1999(Updated: )
MSHTML.DLL in Internet Explorer 5.0 allows a remote attacker to learn information about a local user's files via an IMG SRC tag.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =4.0 | |
Internet Explorer | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0490 is categorized as a medium severity vulnerability due to the potential information disclosure.
To fix CVE-1999-0490, you should upgrade to a newer version of Internet Explorer that does not contain this vulnerability.
CVE-1999-0490 affects Internet Explorer 4.0 and 5.0.
Yes, CVE-1999-0490 can be exploited by a remote attacker using an IMG SRC tag.
CVE-1999-0490 allows an attacker to learn information about a local user's files.