AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2002-2311

MEDIUM · CVSS 6.4 EPSS 9.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2002-12-31 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2002-2311
Severity
MEDIUM
CVSS
6.4
EPSS
9.51%
Microsoft Java

Original NVD Description

Microsoft Internet Explorer 6.0 and possibly others allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a webpage. NOTE: it was reported that the vendor has disputed the severity of this issue.