CVE-2002-1186
Internet Explorer 5.01 through 6.0 does not properly perform security checks on certain encoded characters within a URL, which allows a remote attacker to steal potentially sensitive information from a user by redirecting the user to another site that has that information, aka "Encoded Characters Information Disclosure."
Scoring
- CVSS base score
- 1.33
- EPSS probability
- 33.38%
- Published
- 2004-09-01
- Last modified
- 2026-03-16
Affected products
- n/a n/a