Executive Summary
Informations | |||
---|---|---|---|
Name | MS02-009 | First vendor Publication | N/A |
Vendor | Microsoft | Last vendor Modification | N/A |
Severity (Vendor) | N/A | Revision | N/A |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:P/I:N/A:N) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Incorrect VBScript Handling in IE Can Allow Web Pages to Read Local Files |
CPE : Common Platform Enumeration
OpenVAS Exploits
Date | Description |
---|---|
2005-11-03 | Name : IE VBScript Handling patch (Q318089) File : nvt/smb_nt_ms02-009.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
763 | Microsoft IE VBScript Mis-Handling Arbitrary File Access Microsoft Internet Explorer contains a flaw that may lead to an unauthorized information disclosure. Â The issue is triggered when the user accesses a web page with frames that contains malicious VBScript in one frame, which will disclose web page components of the other frames and potentially files resulting in a loss of confidentiality. |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2002-03-27 | Name : Local files can be retrieved through the web client. File : smb_nt_ms02-009.nasl - Type : ACT_GATHER_INFO |
Alert History
Date | Informations |
---|---|
2014-02-17 11:44:38 |
|