First published: Thu Oct 01 1998(Updated: )
Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into the file upload control, aka untrusted scripted paste.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =4.0.1 | |
Internet Explorer | =4.0.1-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0870 is classified as a medium severity vulnerability.
To mitigate CVE-1999-0870, it is recommended to upgrade to a version of Internet Explorer released after 4.0.1 that addresses this vulnerability.
CVE-1999-0870 allows remote attackers to read arbitrary files from a user's system by exploiting a vulnerability in the file upload control.
CVE-1999-0870 affects Internet Explorer versions 4.0.1 and 4.0.1 SP1.
While CVE-1999-0870 is an older vulnerability, users of legacy systems or software may still be at risk and should take precautions.