# CVE-2002-0027

## Summary

- **CVE ID:** CVE-2002-0027
- **Severity:** UNKNOWN
- **CVSS Score:** 0.58
- **CWE:** N/A
- **Published:** Jun 25, 2002
- **Last Modified:** Mar 16, 2026

## Description

Internet Explorer 5.5 and 6.0 allows remote attackers to read certain files and spoof the URL in the address bar by using the Document.open function to pass information between two frames from different domains, a new variant of the "Frame Domain Verification" vulnerability described in MS:MS01-058/CAN-2001-0874.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://www.osvdb.org/3031)
- [CNA](http://www.securityfocus.com/archive/1/246522)
- [CNA](http://www.securityfocus.com/bid/3721)
- [CNA](https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A974)
- [CNA](https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-005)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 11.70%
- **EPSS Percentile:** 93.5

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._