CVE-2001-1497: Low severity Microsoft ie vulnerability
Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphanumeric characters used in a password by pressing certain control keys that jump between non-alphanumeric characters, which makes it easier to conduct a brute-force password guessing attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2001-1497?
CVE-2001-1497 is considered a moderate severity vulnerability.
How do I fix CVE-2001-1497?
To fix CVE-2001-1497, users should upgrade to a newer version of Microsoft Internet Explorer that is not affected.
Who is affected by CVE-2001-1497?
CVE-2001-1497 affects users of Microsoft Internet Explorer versions 4.0 through 6.0.
What type of attack does CVE-2001-1497 facilitate?
CVE-2001-1497 facilitates brute-force password guessing attacks by exposing password character types.
Is CVE-2001-1497 still relevant today?
CVE-2001-1497 is largely considered outdated as the affected versions of Internet Explorer are no longer supported.