CVE-2001-1410

Internet Explorer 6 and earlier allows remote attackers to create chromeless windows using the Javascript window.createPopup method, which could allow attackers to simulate a victim's display and conduct unauthorized activities or steal sensitive data via social engineering.

Scoring

CVSS base score
3.08
EPSS probability
61.59%
Published
2003-07-17
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs