| Vulnerability Name: | CVE-2002-0699 (CCN-9982) | ||||||||
| Assigned: | 2002-08-28 | ||||||||
| Published: | 2002-08-28 | ||||||||
| Updated: | 2018-10-12 | ||||||||
| Summary: | Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote attackers to delete digital certificates on a user's system via HTML. | ||||||||
| CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N)
| ||||||||
| CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N)
| ||||||||
| Vulnerability Type: | CWE-Other | ||||||||
| Vulnerability Consequences: | Denial of Service | ||||||||
| References: | Source: MITRE Type: CNA CVE-2002-0699 Source: CCN Type: Microsoft Security Bulletin MS02-048 Flaw in Certificate Enrollment Control Could Allow Deletion of Digital Certificates (Q323172) Source: CCN Type: OSVDB ID: 864 Microsoft Windows Certificate Enrollment ActiveX Arbitrary Certificate Deletion Source: CCN Type: BID-5593 Microsoft ActiveX Certificate Enrollment Control Certificate Destruction Vulnerability Source: MS Type: UNKNOWN MS02-048 Source: XF Type: UNKNOWN win-certificate-enrollment-dos(9982) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:190 | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| Oval Definitions | |||||||||
| |||||||||
| BACK | |||||||||