The rendering engine in Internet Explorer determines the MIME type independently of the type that is specified by the server, which allows remote servers to automatically execute script which is placed in a file whose MIME type does not normally support scripting, such as text (.txt), JPEG (.jpg), etc.
References
Link | Resource |
---|---|
http://www.securityfocus.com/archive/1/200109 | Patch Vendor Advisory |
http://www.securityfocus.com/archive/1/200291 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/3116 | Exploit Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2001-10-29 21:00
Updated : 2021-07-23 05:18
NVD link : CVE-2001-0712
Mitre link : CVE-2001-0712
JSON object : View
CWE
Products Affected
microsoft
- internet_explorer