Oval Definition:
oval:org.mitre.oval:def:963
Revision Date
:
2014-02-24
Version
:
44
Title
:
IE File Upload Vulnerability
Description
:
The file upload control in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to automatically upload files from the local system via a web page containing a script to upload the files.
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2003-0114
Platform(s)
:
Microsoft Windows 2000
Microsoft Windows 98
Microsoft Windows ME
Microsoft Windows NT
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s)
:
Microsoft Internet Explorer
Definition Synopsis
Internet Explorer 5.5 Service Pack 2 is installed
AND
the version of mshtml.dll is less than 5.50.4926.2500
AND
NOT
the patch q813489 is installed (Installed Components key)
AND
NOT
the patch q818529 is installed (Installed Components key)
AND
NOT
the patch q822925 is installed (Installed Components key)
AND
NOT
the patch q828750 is installed (Installed Components key)
AND
NOT
the patch q824145 is installed (Installed Components key)
AND
NOT
the patch q832894 is installed (Installed Components key)
BACK