CVE-2002-0077: High severity Microsoft Internet Explorer vulnerability
Microsoft Internet Explorer 5.01, 5.5 and 6.0 treats objects invoked on an HTML page with the codebase property as part of Local Computer zone, which allows remote attackers to invoke executables present on the local system through objects such as the popup object, aka the "Local Executable Invocation via Object tag" vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0077?
CVE-2002-0077 has a medium severity rating due to its potential for exploiting local executables.
How do I fix CVE-2002-0077?
To fix CVE-2002-0077, update to a later version of Microsoft Internet Explorer or apply the security patches provided by Microsoft.
What versions of Internet Explorer are affected by CVE-2002-0077?
CVE-2002-0077 affects Microsoft Internet Explorer versions 5.01, 5.5, and 6.0.
What type of attack is possible with CVE-2002-0077?
CVE-2002-0077 allows remote attackers to invoke executables on the local system through affected objects.
Is it safe to use Internet Explorer 5.5 or earlier with CVE-2002-0077?
Using Internet Explorer 5.5 or earlier is not safe due to the vulnerabilities associated with CVE-2002-0077.