CVE

CVE-2000-0400

Severity:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
13/05/2000
Last modified:
07/11/2016

Description

The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an attacker to download any type of file to a user's system by encoding it within an email message or news post.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*