cbcvebase.
CVE-2002-0057
published 2002-03-08

CVE-2002-0057: XMLHTTP control in Microsoft XML Core Services 2.6 and later does not properly handle IE Security Zone settings, which allows remote attackers to read…

PriorityP430medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
19.18%
97.0th percentile
XMLHTTP control in Microsoft XML Core Services 2.6 and later does not properly handle IE Security Zone settings, which allows remote attackers to read arbitrary files by specifying a local file as an XML Data Source.

Affected

5 ranges
VendorProductVersion rangeFixed in
microsoftinternet_explorer
microsoftsql_server
microsoftxml_core_services
microsoftxml_core_services
microsoftxml_core_services
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.