Internet Explorer 5.5 and earlier allows remote attackers to obtain the physical location of cached content and open the content in the Local Computer Zone, then use compiled HTML help (.chm) files to execute arbitrary programs.
2001-07-21T04:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | internet_explorer | ≤ 5.5 | Yes |
Application | microsoft | internet_explorer | 5.01 | Yes |
Application | microsoft | windows_script_host | 5.1 | Yes |
Application | microsoft | windows_script_host | 5.5 | Yes |