Vulnerability Name: | CVE-1999-0487 (CCN-2161) | ||||||||
Assigned: | 1999-04-21 | ||||||||
Published: | 1999-04-21 | ||||||||
Updated: | 2021-07-22 | ||||||||
Summary: | The DHTML Edit ActiveX control in Internet Explorer allows remote attackers to read arbitrary files. | ||||||||
CVSS v3 Severity: | 3.7 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||
CVSS v2 Severity: | 2.6 Low (CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | File Manipulation | ||||||||
References: | Source: MITRE Type: CNA CVE-1999-0487 Source: CCN Type: US-CERT VU#39965 DHTML Edit Control for IE5 allows local files to be uploaded to web server Source: CCN Type: Microsoft Security Bulletin MS99-011 Patch Available for 'DHTML Edit' Vulnerability Source: CCN Type: NTBugTraq Mailing List, Wed, 21 Apr 1999 22:58:48 +0200 DHTML Edit control IE 5 vulnerabilities Source: CCN Type: OSVDB ID: 906 DHTML Edit ActiveX Control File Stealing and Cross Frame Access Source: CCN Type: BID-116 DHTML Edit ActiveX Control File Stealing and Cross Frame Access Vulnerability Source: MS Type: UNKNOWN MS99-011 Source: XF Type: UNKNOWN ie-dhtml-control(2161) Source: CCN Type: Microsoft Knowledge Base Article 226326 Update Available For "DHTML Edit" Security Issue | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |