Back

CVE-2000-0465

Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files via the frame, aka the "Frame Domain Verification" vulnerability.

Published: May 17, 2000 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (4)

Vendor Product Version
microsoft internet_explorer 4.0
microsoft internet_explorer 5.0
microsoft internet_explorer 5.01
microsoft internet_explorer 5.5

GitHub Security Advisory GHSA-rf8w-rp5f-f625

Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser...

Risk Scores

CVSS Score 5.1 / 10
EPSS Score 24.54%

Top 4% most likely to be exploited

Threat Score 27.8 / 100

Data Sources

NVD EPSS GitHub