CVE-2001-0092: Low severity Microsoft Internet Explorer vulnerability
Published Feb 16, 2001
·Updated
A function in Internet Explorer 5.0 through 5.5 does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a new variant of the "Frame Domain Verification" vulnerability.
Affected Software
3 affected components
Microsoft Internet Explorer=5.01
Microsoft Internet Explorer=5.0
Microsoft Internet Explorer=5.5
Event History
Feb 16, 2001
CVE Published
05:00 AM
May 7, 2001
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2001-0092?
CVE-2001-0092 is considered a medium severity vulnerability due to its potential for information disclosure.
2
How do I fix CVE-2001-0092?
To fix CVE-2001-0092, apply the security patches provided by Microsoft for Internet Explorer 5.0, 5.01, and 5.5.
3
What are the affected versions in CVE-2001-0092?
CVE-2001-0092 affects Internet Explorer versions 5.0, 5.01, and 5.5.
4
Can CVE-2001-0092 allow remote access to my files?
Yes, CVE-2001-0092 can allow remote attackers to read local files on the client side.
5
Is CVE-2001-0092 still a threat today?
While CVE-2001-0092 primarily affects outdated versions of Internet Explorer, users of unsupported software may still be at risk.