Back

CVE-2002-0027

Internet Explorer 5.5 and 6.0 allows remote attackers to read certain files and spoof the URL in the address bar by using the Document.open function to pass information between two frames from different domains, a new variant of the "Frame Domain Verification" vulnerability described in MS:MS01-058/CAN-2001-0874.

Published: Mar 8, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
microsoft internet_explorer 5.5
microsoft internet_explorer 6.0

GitHub Security Advisory GHSA-56vq-gj2v-q82q

Internet Explorer 5.5 and 6.0 allows remote attackers to read certain files and spoof the URL in...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 19.32%

Top 3% most likely to be exploited

Threat Score 35.8 / 100

Data Sources

NVD EPSS GitHub