5
CVSSv2

CVE-2002-0057

Published: 08/03/2002 Updated: 23/07/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

XMLHTTP control in Microsoft XML Core Services 2.6 and later does not properly handle IE Security Zone settings, which allows remote malicious users to read arbitrary files by specifying a local file as an XML Data Source.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft sql server 2000

microsoft internet explorer 6.0

microsoft xml core services 3.0

microsoft xml core services 4.0

microsoft xml core services 2.6

microsoft windows xp