← Voltar para CVEs
CVE-1999-1087
N/ADescricao
Internet Explorer 4 treats a 32-bit number ("dotless IP address") in the a URL as the hostname instead of an IP address, which causes IE to apply Local Intranet Zone settings to the resulting web page, allowing remote malicious web servers to conduct unauthorized activities by using URLs that contain the dotless IP address for their server.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado12/31/1999
Ultima modificacao4/16/2026
Fontenvd
Avistamentos honeypot0
Produtos afetados
microsoft:internet_explorer
Referencias
http://www.microsoft.com/Windows/Ie/security/dotless.asp(cve@mitre.org)
http://www.osvdb.org/7828(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/2209(cve@mitre.org)
http://support.microsoft.com/support/kb/articles/q168/6/17.asp(af854a3a-2127-422b-91ae-364da2661108)
http://www.microsoft.com/Windows/Ie/security/dotless.asp(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/7828(af854a3a-2127-422b-91ae-364da2661108)
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-016(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/2209(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.