First published: Wed Dec 08 1999(Updated: )
Internet Explorer 5.01 and earlier allows a remote attacker to create a reference to a client window and use a server-side redirect to access local files via that window, aka "Server-side Page Reference Redirect."
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | <=5.01 | |
Internet Explorer | =4.0.1 | |
Internet Explorer | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-0981 has a moderate severity rating due to its potential to expose local files to remote attackers.
To mitigate CVE-1999-0981, users should upgrade to a later version of Internet Explorer, beyond version 5.01.
CVE-1999-0981 affects Internet Explorer versions 5.01 and earlier, including version 5.0 and version 4.0.1.
CVE-1999-0981 facilitates a server-side page reference redirect attack that can access local files through manipulated client windows.
While CVE-1999-0981 is less of a concern with modern browsers, users on legacy systems should be aware of its risks.