VULNERABILITY INTELLIGENCE

CVE-2000-0767

CVSS score2.6 LOW
EPSS probability4.36%
CISA KEVNot currently listed
Published2000-10-20
Last modified2026-06-16

Description

The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the "Scriptlet Rendering" vulnerability.