5.1
CVSSv2

CVE-1999-0668

Published: 21/08/1999 Updated: 07/11/2023
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

The scriptlet.typelib ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote malicious user to execute arbitrary commands as demonstrated by Bubbleboy.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 4.0

microsoft internet explorer 5.0

Exploits

Microsoft Internet Explorer 50 for Windows 95/Windows 98/Windows NT 4 ActiveX "Object for constructing type libraries for scriptlets" Vulnerability source: wwwsecurityfocuscom/bid/598/info The 'scriptlettyplib' ActiveX control can create, edit, and overwrite files on the local disk This means that an executable text file (eg a 'hta ...