CVE-1999-0490

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Apr 21, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0490 is a vulnerability affecting Internet Explorer 5.0's MSHTML.DLL component. An attacker can exploit this issue by manipulating an IMG SRC tag to gain unauthorized access to local user files, revealing sensitive information. This security flaw poses a significant risk to users who may visit compromised websites, allowing attackers to bypass security boundaries and potentially steal valuable data. Microsoft released a patch to address this issue, and users are strongly encouraged to update their browsers to ensure protection against this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Internet Explorer

Affected Vendors

  • Microsoft