CVE-1999-0280

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Apr 1, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-0280 is a remote command execution vulnerability in Microsoft Internet Explorer. Maliciously crafted .lnk and .url files could exploit this issue, allowing attackers to execute arbitrary code on affected systems. This vulnerability poses a significant risk to users who open untrusted files received via email or from the internet. Exploitation does not require user interaction beyond opening the file, making it particularly dangerous. Microsoft issued a patch to address this issue, and users are urged to apply it as soon as possible to protect against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Internet Explorer

Affected Vendors

  • Microsoft