CVE-1999-0347
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.
- Affected products
- Internet Explorer
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 7.5% (94th percentile)
- NVD status
- Modified
- Published
- 2000-02-04
CVE-1999-0347 at NVD
1 known exploit for CVE-1999-0347
Proof-of-concept code and exploit modules indexed by Sploitus