HIGH
File Download box in Internet Explorer 5.01, 5.5 and 6.0 allows an attacker to use the Content-Disposition and Content-Type HTML header fields to modify how the name of the file is displayed, which could trick a user into believing that a file is safe to download
Published Apr 2, 2003
7.5
HIGHCVSS 2.0
EPSS 4.33%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.