Back

CVE-2000-0596

Internet Explorer 5.x does not warn a user before opening a Microsoft Access database file that is referenced within ActiveX OBJECT tags in an HTML document, which could allow remote attackers to execute arbitrary commands, aka the "IE Script" vulnerability.

Published: Jun 27, 2000 Modified: Apr 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
microsoft internet_explorer 4.0.1
microsoft internet_explorer 5

GitHub Security Advisory GHSA-hqf4-9x6j-98g9

Internet Explorer 5.x does not warn a user before opening a Microsoft Access database file that...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 13.01%

Top 6% most likely to be exploited

Threat Score 33.9 / 100

Data Sources

NVD EPSS GitHub