← All CVEs

CVE-2002-1688

medium · 5

The browser history feature in Microsoft Internet Explorer 5.5 through 6.0 allows remote attackers to execute arbitrary script as other users and steal authentication information via cookies by injecting JavaScript into the URL, which is executed when the user hits the Back button.

5
CVSS
17.5%
EPSS (exploit prob.)
97th
EPSS percentile
2002-12-31
Published

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

VendorProductAffected versions
microsoftinternet_explorer5.5
microsoftinternet_explorer5.5
microsoftinternet_explorer5.5
microsoftinternet_explorer6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2002-1688