CVE-1999-0891: Code Injection
Published Sep 1, 1999
·Updated
The "download behavior" in Internet Explorer 5 allows remote attackers to read arbitrary files via a server-side redirect.
Affected Software
1 affected component
Microsoft Internet Explorer=5.0
Event History
Sep 1, 1999
CVE Published
04:00 AM
Data Sourced
via NVD·04:00 AM
DescriptionSeverityWeaknessAffected Software
Jan 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-1999-0891?
CVE-1999-0891 has been classified as a critical vulnerability due to its ability to allow remote attackers to access sensitive files.
2
How do I fix CVE-1999-0891?
To mitigate CVE-1999-0891, it is recommended to upgrade to a later version of Internet Explorer that does not exhibit this vulnerable behavior.
3
What is the exploit method for CVE-1999-0891?
The exploit method for CVE-1999-0891 involves using server-side redirects to trick the browser into downloading arbitrary files.
4
Which versions of Internet Explorer are affected by CVE-1999-0891?
CVE-1999-0891 specifically affects Internet Explorer 5.0.
5
Who is impacted by CVE-1999-0891?
Users of Internet Explorer 5.0 are at risk of having their files accessed by attackers exploiting CVE-1999-0891.