CVE-1999-0668
CVSS 2.0 Score 5.1 of 10 (medium)
Details
Summary
CVE-1999-0668 is a vulnerability in the scriptlet.typelib ActiveX control, which is marked as "safe for scripting" in Internet Explorer. This misclassification enables a remote attacker to execute arbitrary commands, as demonstrated in the Bubbleboy exploit. By exploiting this vulnerability, an attacker can gain control over an affected system, potentially leading to data theft or system damage. The vulnerability posed a significant threat to Internet Explorer users during the late 1990s and early 2000s, highlighting the importance of secure coding practices and regular software updates.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Internet Explorer
Affected Vendors
- Microsoft