CVE-1999-1235: Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local
Summary
Internet Explorer 5.0 records the username and password for FTP servers in the URL history, which could allow (1) local users to read the information from another user's index.dat, or (2) people who are physically observing ("shoulder surfing") another user to read the information from the status bar when the user moves the mouse over a link.
Severity
UNKNOWN
Source Attribution
Source: NVD · Updated: 2026-08-21T04:30:48.834Z · Confidence: high
Impact
Based on CVSS vector: n/a — assess confidentiality, integrity, and availability impact via the official vector documentation.
Affected Software
Fix
Upgrade affected software to the fixed version identified above. Apply vendor patches and monitor advisories before exposed systems go unpatched.
References
- http://ntbugtraq.ntadvice.com/default.asp?pid=36&sid=1&A2=ind9904&L=NTBUGTRAQ&P=R179
- http://packetderm.cotse.com/mailing-lists/ntbugtraq/1999/0364.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3289
- http://ntbugtraq.ntadvice.com/default.asp?pid=36&sid=1&A2=ind9904&L=NTBUGTRAQ&P=R179
- http://packetderm.cotse.com/mailing-lists/ntbugtraq/1999/0364.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3289