← All CVEs

CVE-2002-0269

high · 7.5

Internet Explorer 5.x and 6 interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks.

7.5
CVSS
11.5%
EPSS (exploit prob.)
96th
EPSS percentile
2002-05-29
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
microsoftinternet_explorer5.0
microsoftinternet_explorer5.0.1
microsoftinternet_explorer5.0.1
microsoftinternet_explorer5.01
microsoftinternet_explorer5.5
microsoftinternet_explorer5.5
microsoftinternet_explorer5.5
microsoftinternet_explorer6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2002-0269