CVE-1999-0870
Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into the file upload control, aka untrusted scripted paste.
Date published : 2000-01-04
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-015