5.1
CVSSv2

CVE-2001-0150

Published: 02/06/2001 Updated: 13/02/2024
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Internet Explorer 5.5 and previous versions executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote malicious users to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which creates session transcripts.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer

Exploits

source: wwwsecurityfocuscom/bid/2463/info Services for Unix 20 contains a client side logging option which records all information exchanged in a telnet session A vulnerability exists that could enable a remote user to invoke the telnet client and execute arbitrary commands on a target machine via IE This is achieved by crafting a URL ...