Unrated severityNVD Advisory· Published Jun 5, 2000· Updated Apr 16, 2026
CVE-2000-0518
CVE-2000-0518
Description
Internet Explorer 4.x and 5.x does not properly verify all contents of an SSL certificate if a connection is made to the server via an image or a frame, aka one of two different "SSL Certificate Validation" vulnerabilities.
Affected products
14cpe:2.3:a:microsoft:ie:4.0.1:*:windows_95:*:*:*:*:*+ 12 more
- cpe:2.3:a:microsoft:ie:4.0.1:*:windows_95:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:4.0.1:*:windows_98:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:4.0.1:*:windows_nt:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:4.0:*:windows_98:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:4.0:*:windows_nt:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0.1:*:windows_2000:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0.1:*:windows_95:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0.1:*:windows_98:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0.1:*:windows_nt_4.0:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0:*:windows_2000:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0:*:windows_95:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5.0:*:windows_98:*:*:*:*:*
- cpe:2.3:a:microsoft:ie:5:*:windows_nt_4.0:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:4.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- www.cert.org/advisories/CA-2000-10.htmlnvdPatchThird Party AdvisoryUS Government Resource
- www.securityfocus.com/bid/1309nvdPatchVendor Advisory
- www.acrossecurity.com/aspr/ASPR-1999-12-15-1-PUB.txtnvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-039nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/4624nvd
News mentions
0No linked articles in our index yet.