First published: Fri Feb 16 2001(Updated: )
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | <=5.5 | |
Internet Explorer | =5.0 | |
Internet Explorer | =5.01 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0089 has a moderate severity rating due to its potential for unauthorized file access.
To fix CVE-2001-0089, users should upgrade to Internet Explorer version 6.0 or later.
CVE-2001-0089 affects users of Internet Explorer 5.0, 5.01, and 5.5.
CVE-2001-0089 enables remote attackers to read arbitrary files from the client's filesystem.
CVE-2001-0089 was disclosed in the year 2001.