01642 06 11 11 Arrange Call

Local Executable Invocation via Object tag vulnerability in Microsoft Internet Explorer 5.01, 5.5, and 6.0

CVE-2002-0077 · HIGH

CVE-2002-0077

Microsoft Internet Explorer 5.01, 5.5 and 6.0 treats objects invoked on an HTML page with the codebase property as part of Local Computer zone, which allows remote attackers to invoke executables present on the local system through objects such as the popup object, aka the "Local Executable Invocation via Object tag" vulnerability.

Learn more about our Web Application Penetration Testing UK.