VULNERABILITY INTELLIGENCE
CVE-2000-0767
CVSS score2.6 LOW
EPSS probability4.36%
CISA KEVNot currently listed
Published2000-10-20
Last modified2026-06-16
Description
The ActiveX control for invoking a scriptlet in Internet Explorer 4.x and 5.x renders arbitrary file types instead of HTML, which allows an attacker to read arbitrary files, aka the "Scriptlet Rendering" vulnerability.