7.5
CVSSv2

CVE-2000-0400

Published: 13/05/2000 Updated: 07/11/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Microsoft Active Movie ActiveX Control in Internet Explorer 5 does not restrict which file types can be downloaded, which allows an malicious user to download any type of file to a user's system by encoding it within an email message or news post.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5

Exploits

source: wwwsecurityfocuscom/bid/1221/info The Microsoft Active Movie Control (a multimedia ActiveX control) will download files of any type specified in the control parameters in an HTML document, regardless of whether or not they are a valid media type A hostile website, HTML email or HTML newsgroup post could therefore write executable ...