CVE-1999-1235 Information

Description

Internet Explorer 5.0 records the username and password for FTP servers in the URL history which could allow (1) local users to read the information from another user’s index.dat or (2) people who are physically observing (\shoulder surfing) another user to read the information from the status bar when the user moves the mouse over a link.

Reference

http://ntbugtraq.ntadvice.com/default.asp?pid=36&sid=1&A2=ind9904&L=NTBUGTRAQ&P=R179 http://packetderm.cotse.com/mailing-lists/ntbugtraq/1999/0364.html https://exchange.xforce.ibmcloud.com/vulnerabilities/3289

Share on: