Internet Explorer 4.0 and 5.0 allows a remote attacker to execute security scripts in a different security context using malicious URLs, a variant of the "cross frame" vulnerability.
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-012