Vulnerability Name: | CVE-2002-0461 (CCN-8488) | ||||||||
Assigned: | 2002-03-18 | ||||||||
Published: | 2002-03-18 | ||||||||
Updated: | 2021-07-23 | ||||||||
Summary: | Internet Explorer 5.01 through 6 allows remote attackers to cause a denial of service (application crash) via Javascript in a web page that calls location.replace on itself, causing a loop. | ||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: CCN Type: BugTraq Mailing List, Mon Mar 18 2002 - 12:36:46 CST Javascript loop causes IE to crash Source: MITRE Type: CNA CVE-2002-0461 Source: BUGTRAQ Type: Vendor Advisory 20020318 Javascript loop causes IE to crash Source: XF Type: Vendor Advisory ie-javascript-dos(8488) Source: CCN Type: OSVDB ID: 7849 Microsoft IE Javascript location.replace Recursive DoS Source: BID Type: Exploit, Patch, Vendor Advisory 4322 Source: CCN Type: BID-4322 Multiple Vendor JavaScript Interpreter Denial Of Service Vulnerability Source: XF Type: UNKNOWN ie-javascript-dos(8488) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
BACK |