CVE-2002-0500: Medium severity Microsoft Internet Explorer vulnerability
Internet Explorer 5.0 through 6.0 allows remote attackers to determine the existence of files on the client via an IMG tag with a dynsrc property that references the target file, which sets certain elements of the image object such as file size.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0500?
CVE-2002-0500 has a moderate severity rating, as it allows remote attackers to infer the existence of files on a victim's system.
How does CVE-2002-0500 work?
CVE-2002-0500 exploits the IMG tag with a dynsrc property to reveal file information based on specified files.
What versions of Internet Explorer are affected by CVE-2002-0500?
CVE-2002-0500 affects Internet Explorer versions 5.0 through 6.0, including specific service packs.
How can I mitigate the risks associated with CVE-2002-0500?
To mitigate risks from CVE-2002-0500, users should upgrade to newer and supported versions of Internet Explorer.
Is there a patch available for CVE-2002-0500?
There is no specific patch for CVE-2002-0500, but upgrading to a newer version of Internet Explorer will resolve the issue.