CVE-2002-0078: Microsoft Internet Explorer
High severity, CVSS 7.5. EPSS: 21.9% chance of exploitation in the next 30 days.
The zone determination function in Microsoft Internet Explorer 5.5 and 6.0 allows remote attackers to run scripts in the Local Computer zone by embedding the script in a cookie, aka the "Cookie-based Script Execution" vulnerability.
Affected products
- Microsoft Internet Explorer: version 5.0.1 only; version 5.5 only; version 6.0 only
Published 2002-03-29. Last modified 2026-06-16.