CVE-2000-0156 EXPLOIT
5.1
MEDIUM · CVSS 2.0 · EPSS 12.8% (pctl 96)
Patch early
A public exploit exists.
Description
Internet Explorer 4.x and 5.x allows remote web servers to access files on the client that are outside of its security domain, aka the "Image Source Redirect" vulnerability.
Scoring
| CVSS | 5.1 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
| EPSS | 12.83% — more likely to be exploited than 96% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2000-02-16 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| microsoft | internet explorer |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Internet Explorer 4.0/4.0.1/5.0/5.0.1/5.5 - preview Security Zone Settings Lag | 2000-01-07 |
References
- http://www.osvdb.org/7827
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-009
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3996
- http://www.osvdb.org/7827
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-009
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3996
→ the Explorer · watch your stack · NVD