CVE-1999-1235

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Aug 25, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1235 is a vulnerability affecting Internet Explorer 5.0. This issue permits local users to gain unauthorized access to each other's saved FTP credentials by viewing the index.dat file in the URL history. Additionally, an attacker can perform "shoulder surfing" by observing another user's screen as they navigate to FTP links, revealing their username and password from the status bar. This vulnerability poses a significant risk to network security and confidentiality.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Internet Explorer

Affected Vendors

  • Microsoft