The rendering engine in Internet Explorer determines the MIME type independently of the type that is specified by the server, which allows remote servers to automatically execute script which is placed in a file whose MIME type does not normally support scripting, such as text (.txt), JPEG (.jpg), etc.
References
Link | Resource |
---|---|
http://www.securityfocus.com/archive/1/200109 | Patch Vendor Advisory |
http://www.securityfocus.com/archive/1/200291 | Patch Vendor Advisory |
http://www.securityfocus.com/bid/3116 | Exploit Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2001-10-12T04:00:00
Updated: 2003-03-21T10:00:00
Reserved: 2001-09-07T00:00:00
Link: CVE-2001-0712
JSON object: View
NVD Information
Status : Analyzed
Published: 2001-10-30T05:00:00.000
Modified: 2021-07-23T12:18:04.053
Link: CVE-2001-0712
JSON object: View
Redhat Information
No data.
CWE