积极预防 及时发现
快速响应 力保恢复
Internet Explorer 5.0(也可能是其他版本)可能可以允许远程的攻击者和恶意的网页通...
发布时间:2001-12-06 信息来源:管理员

CNCVE编号:CNCVE-20010807 CVE编号:CAN-2001-0807 安全级别:中 漏洞中文描述: Internet Explorer 5.0(也可能是其他版本)可能可以允许远程的攻击者和恶意的网页通过有指向文本文件的SRC值的脚本标签来从客户的硬盘上读取已知的文本文件。 漏洞英文描述: Internet Explorer 5.0, and possibly other versions, may allow remote attackers (malicious web pages) to read known text files from a client's hard drive via a SCRIPT tag with a SRC value that points to the text file. 漏洞参考: Reference: BUGTRAQ:20010606 security bug Internet Explorer 5 Reference: URL:http://www.securityfocus.com/cgi-bin/archive.pl?id=1&mid=189341 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误