Back

CVE-1999-0488

Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.

Published: Apr 21, 1999 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
microsoft internet_explorer 4.0
microsoft internet_explorer 4.0.1
microsoft internet_explorer 4.0.1
microsoft internet_explorer 5.0

GitHub Security Advisory GHSA-rmhf-3gpx-f5r8

Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 3.35%

Top 12% most likely to be exploited

Threat Score 31 / 100

Data Sources

NVD EPSS GitHub