The zone determination function in Microsoft Internet Explorer 5.5 and 6.0 allows remote attackers to run scripts in the Local Computer zone by embedding the script in a cookie, aka the "Cookie-based Script Execution" vulnerability.
| Software | From | Fixed in |
|---|---|---|
| microsoft / internet_explorer | 5.5-sp2 | 5.5-sp2.x |
| microsoft / internet_explorer | 5.0.1-sp2 | 5.0.1-sp2.x |
| microsoft / internet_explorer | 5.0.1-sp1 | 5.0.1-sp1.x |
| microsoft / internet_explorer | 5.5 | 5.5.x |
| microsoft / internet_explorer | 5.5-sp1 | 5.5-sp1.x |
| microsoft / internet_explorer | 6.0 | 6.0.x |