Back

CVE-2002-0189

Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute scripts in the Local Computer zone via a URL that exploits a local HTML resource file, aka the "Cross-Site Scripting in Local HTML Resource" vulnerability.

Published: May 29, 2002 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (5)

Vendor Product Version
microsoft internet_explorer 5.0
microsoft internet_explorer 5.5
microsoft internet_explorer 5.5
microsoft internet_explorer 5.5
microsoft internet_explorer 6.0

GitHub Security Advisory GHSA-ph5w-phqr-wqq2

Cross-site scripting vulnerability in Internet Explorer 6.0 allows remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 13.61%

Top 4% most likely to be exploited

Threat Score 34.1 / 100

Data Sources

NVD EPSS GitHub