Back

CVE-2000-0465

Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files via the frame, aka the "Frame Domain Verification" vulnerability.

Published: May 17, 2000 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
microsoft internet_explorer 4.0
microsoft internet_explorer 5.0
microsoft internet_explorer 5.01
microsoft internet_explorer 5.5

GitHub Security Advisory GHSA-rf8w-rp5f-f625

Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser...

Risk Scores

CVSS Score 5.1 / 10
EPSS Score 20.44%

Top 3% most likely to be exploited

Threat Score 26.5 / 100

Data Sources

NVD EPSS GitHub