CVE-1999-0668

CVSS 2.0 Score 5.1 of 10 (medium)

Details

Published Aug 21, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0668 is a vulnerability in the scriptlet.typelib ActiveX control, which is marked as "safe for scripting" in Internet Explorer. This misclassification enables a remote attacker to execute arbitrary commands, as demonstrated in the Bubbleboy exploit. By exploiting this vulnerability, an attacker can gain control over an affected system, potentially leading to data theft or system damage. The vulnerability posed a significant threat to Internet Explorer users during the late 1990s and early 2000s, highlighting the importance of secure coding practices and regular software updates.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Internet Explorer

Affected Vendors

  • Microsoft