Back
CVE-2001-0724
Internet Explorer 5.5 allows remote attackers to bypass security restrictions via malformed URLs that contain dotless IP addresses, which causes Internet Explorer to process the page in the Intranet Zone, which may have fewer security restrictions, aka the "Zone Spoofing Vulnerability variant" of CVE-2001-0664.
Published: Nov 14, 2001
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| microsoft | internet_explorer | 5.5 |
GitHub Security Advisory GHSA-3vhr-9x24-76hj
Internet Explorer 5.5 allows remote attackers to bypass security restrictions via malformed URLs...
References (6)
- http://www.osvdb.org/5556
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-055
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8471
- http://www.osvdb.org/5556
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-055
- https://exchange.xforce.ibmcloud.com/vulnerabilities/8471
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
12.32%
Top 4% most likely to be exploited
Threat Score
33.7 / 100
Data Sources
NVD
EPSS
GitHub