积极预防 及时发现
快速响应 力保恢复
Internet Explorer5.0到5.5版本没有确切地验证浏览器窗口中的框架域,这将导致远程...
发布时间:2001-02-16 信息来源:管理员

CNCVE编号:CNCVE-20010092 CVE编号:CVE-2001-0092 安全级别:中 漏洞中文描述: Internet Explorer5.0到5.5版本没有确切地验证浏览器窗口中的框架域,这将导致远程攻击者可以阅读客户端的文件 漏洞英文描述: A function in Internet Explorer 5.0 through 5.5 does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files, aka a new variant of the "Frame Domain Verification" vulnerability. 漏洞参考: MS:MS00-093 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误