CVE-2001-0150 EXPLOIT
5.1
MEDIUM · CVSS 2.0 · EPSS 17.6% (pctl 97)
Patch early
A public exploit exists.
Description
Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which creates session transcripts.
Scoring
| CVSS | 5.1 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
| EPSS | 17.59% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-88 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2001-06-02 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| microsoft | internet explorer |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Internet Explorer 5.0.1/5.5/6.0 - Telnet Client File Overwrite | 2001-03-09 |
References
- http://www.osvdb.org/7816
- http://www.securityfocus.com/bid/2463
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-015
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6230
- http://www.osvdb.org/7816
- http://www.securityfocus.com/bid/2463
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-015
- https://exchange.xforce.ibmcloud.com/vulnerabilities/6230
→ the Explorer · watch your stack · NVD