CVE-1999-0917
published 1999-05-27CVE-1999-0917: The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files.
PriorityP420medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
6.20%
92.7th percentile
The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Microsoft Internet Explorer 4.0/5.0 Preloader ActiveX Control privileges management (MS99-018 / XFDB-3526)
vuldb·2026-04-19·CVSS 5.1
CVE-1999-0917 [MEDIUM] Microsoft Internet Explorer 4.0/5.0 Preloader ActiveX Control privileges management (MS99-018 / XFDB-3526)
A vulnerability described as critical has been identified in Microsoft Internet Explorer 4.0/5.0. The impacted element is an unknown function of the component Preloader ActiveX Control. The manipulation results in improper privilege management.
This vulnerability is known as CVE-1999-0917. It is possible to launch the attack remotely. No exploit is available.
It is best practice to apply a patch to resolve this issue.
GHSA
GHSA-4frx-223w-xwg7: The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files
ghsa_unreviewed·2022-04-30
CVE-1999-0917 [MEDIUM] GHSA-4frx-223w-xwg7: The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files
The Preloader ActiveX control used by Internet Explorer allows remote attackers to read arbitrary files.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231452https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-018http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ231452https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-018
1999-05-27
Published