Description
Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability.
Products
- Microsoft Internet Explorer 4.0.1
 - Microsoft Internet Explorer 4.0.1 Service Pack 1
 - Microsoft Internet Explorer 4.0.1 Service Pack 2
 - Microsoft Internet Explorer 4.0
 - Microsoft Internet Explorer 5.01
 - Microsoft Internet Explorer 5.01 Service Pack 1
 - Microsoft Internet Explorer 5.01 Service Pack 2
 - Microsoft Internet Explorer 5.01 Service Pack 3
 - Microsoft Internet Explorer 5.01 Service Pack 4
 - Microsoft Internet Explorer 5.0
 
Questions to Ask Vendors
- Can you confirm whether your systems are affected by CVE-2000-0156, and if so, what steps are you currently taking to mitigate this vulnerability?
 - What is your estimated timeline for fully resolving CVE-2000-0156 in your products or services, and how will you communicate updates on this issue to us as your customer?
 
Recommended Actions
- Check out the advisory links provided below.
 
References