First published: Tue Dec 19 2000(Updated: )
Internet Explorer before 5.5 forwards cached user credentials for a secure web site to insecure pages on the same web site, which could allow remote attackers to obtain the credentials by monitoring connections to the web server, aka the "Cached Web Credentials" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =5.01 | |
Internet Explorer | =4.0 | |
Internet Explorer | =4.0.1 | |
Internet Explorer | =4.1 | |
Internet Explorer | =5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0982 is considered a medium severity vulnerability due to the risk of credential leakage.
To fix CVE-2000-0982, users should upgrade to Internet Explorer version 5.5 or later, or switch to a different browser.
CVE-2000-0982 affects Internet Explorer versions 4.0, 4.0.1, 4.1, and 5.0, specifically prior to version 5.5.
CVE-2000-0982 enables remote attackers to capture cached user credentials by monitoring insecure connections.
While CVE-2000-0982 primarily affects outdated versions of Internet Explorer, it is important to avoid using vulnerable software.