CVE-1999-0891

CVSS 2.0 Score 5 of 10 (medium)

Details

Published Sep 1, 1999
Updated: Nov 20, 2024
CWE ID 94

Summary

CVE-1999-0891 is a vulnerability affecting Internet Explorer 5's "download behavior." An attacker can exploit this issue by redirecting a user to a malicious server, enabling the attacker to read arbitrary files on the user's system. This vulnerability poses a significant risk as it bypasses the user's control and can lead to the exposure of sensitive information. The exploit is server-side, meaning the attacker does not need any user interaction, making it particularly dangerous. Users are advised to update their browsers as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Internet Explorer

Affected Vendors

  • Microsoft