CVE-2001-0089: Low severity Microsoft Internet Explorer vulnerability
Published Feb 16, 2001
·Updated
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.
Affected Software
3 affected components
Microsoft Internet Explorer=5.01
Microsoft Internet Explorer=5.0
Microsoft Internet Explorer<=5.5
Event History
Feb 16, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0089?
CVE-2001-0089 has a moderate severity rating due to its potential for unauthorized file access.
2
How do I fix CVE-2001-0089?
To fix CVE-2001-0089, users should upgrade to Internet Explorer version 6.0 or later.
3
Who is affected by CVE-2001-0089?
CVE-2001-0089 affects users of Internet Explorer 5.0, 5.01, and 5.5.
4
What type of attack does CVE-2001-0089 enable?
CVE-2001-0089 enables remote attackers to read arbitrary files from the client's filesystem.
5
When was CVE-2001-0089 discovered?
CVE-2001-0089 was disclosed in the year 2001.