Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0723


Vulnerability Score 7.5 7.5
CVE Id CVE-2002-0723
Last Modified 10 Sep 2008 03:12:46
Published 24 Sep 2002 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE



Microsoft Internet Explorer 5.5 and 6.0 does not properly verify the domain of a frame within a browser window, which allows remote attackers to read client files or invoke executable objects via the Object tag, aka "Cross Domain Verification in Object Tag."

Vulnerable Systems


  • Microsoft Ie 5.5

  • Microsoft Ie 6.0


MS - MS02-047

BID - 5196

XF - ie-object-scripting(9537)

Last Updated: 27 May 2016 10:37:02