CVE-2002-0976

Internet Explorer 4.0 and later allows remote attackers to read arbitrary files via a web page that accesses a legacy XML Datasource applet (com.ms.xml.dso.XMLDSO.class) and modifies the base URL to point to the local system, which is trusted by the applet.

Scoring

CVSS base score
2.2
EPSS probability
55.00%
Published
2002-08-23
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs