CVE-2001-0002
high · 7.5Internet Explorer 5.5 and earlier allows remote attackers to obtain the physical location of cached content and open the content in the Local Computer Zone, then use compiled HTML help (.chm) files to execute arbitrary programs.
7.5
CVSS
20.2%
EPSS (exploit prob.)
97th
EPSS percentile
2001-07-21
Published
AV:N/AC:L/Au:N/C:P/I:P/A:P
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | internet_explorer | <= 5.5 |
| microsoft | internet_explorer | 5.01 |
| microsoft | windows_script_host | 5.1 |
| microsoft | windows_script_host | 5.5 |
Check a specific version with /api/v1/cve/match.
References
- http://www.guninski.com/chmtempmain.html
- http://www.osvdb.org/7823
- http://www.securityfocus.com/bid/2456
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-015
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5567
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A920
- http://www.guninski.com/chmtempmain.html
- http://www.osvdb.org/7823
- http://www.securityfocus.com/bid/2456
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-015
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5567
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A920
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2001-0002