First published: Fri Dec 31 1999(Updated: )
Internet Explorer 4.0 allows remote attackers to read arbitrary text and HTML files on the user's machine via a small IFRAME that uses Dynamic HTML (DHTML) to send the data to the attacker, aka the Freiburg text-viewing issue.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1472 is considered a high severity vulnerability due to the potential for remote attackers to access sensitive files on a user's machine.
To fix CVE-1999-1472, users should upgrade to a more secure version of Internet Explorer or apply available patches from Microsoft.
CVE-1999-1472 enables remote attackers to exploit Dynamic HTML to read arbitrary files on the victim's machine.
CVE-1999-1472 specifically affects Internet Explorer version 4.0.
Yes, CVE-1999-1472 can be exploited remotely without requiring any user interaction.