Back
CVE-1999-0488
Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.
Published: Apr 21, 1999
Modified: Apr 16, 2026
CVSS Metrics
Affected Products (4)
| Vendor | Product | Version |
|---|---|---|
| microsoft | internet_explorer | 4.0 |
| microsoft | internet_explorer | 4.0.1 |
| microsoft | internet_explorer | 4.0.1 |
| microsoft | internet_explorer | 5.0 |
GitHub Security Advisory GHSA-rmhf-3gpx-f5r8
Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different...
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.35%
Top 12% most likely to be exploited
Threat Score
31 / 100
Data Sources
NVD
EPSS
GitHub