CVE-2002-2311
Microsoft Internet Explorer 6.0 and possibly others allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a webpage. NOTE: it was reported that the vendor has disputed the severity of this issue.
Scoring
- CVSS base score
- 1.18
- EPSS probability
- 23.51%
- Published
- 2007-10-26
- Last modified
- 2026-03-16
Affected products
- n/a n/a