CVE-2000-0767: Low severity Microsoft Internet Explorer vulnerability
The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the "Scriptlet Rendering" vulnerability.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0767?
CVE-2000-0767 has a severity rating that indicates a medium risk due to the potential for unauthorized file access.
How does CVE-2000-0767 affect affected software?
CVE-2000-0767 affects Internet Explorer versions 4.x and 5.x, allowing attackers to read arbitrary files on the user's system.
What can be done to mitigate CVE-2000-0767?
To mitigate CVE-2000-0767, users should upgrade to a newer version of Internet Explorer that is not affected by this vulnerability.
Is CVE-2000-0767 a known vulnerability?
Yes, CVE-2000-0767 is a well-documented vulnerability that has been recognized for its potential impact on file security.
What types of attacks can exploit CVE-2000-0767?
CVE-2000-0767 can be exploited through specially crafted web pages that invoke the vulnerable ActiveX control to access local files.