Get a Pentest and security assessment of your IT network.

Advisories

ieodrev.txt

eEye Advisory – There is a flaw in Microsoft’s primary contribution to HTML, the Object tag, which is used to embed almost all ActiveX into HTML pages. The parameter that specifies the remote location of data for objects is not checked to validate the nature of the file being loaded, and therefore trojan executables may be run from within a web page as silently and as easily as Internet Explorer parses image files or any other safe HTML content. Version affected: Microsoft Internet Explorer 5.01, 5.5, 6.0, and 6.0 for Windows Server 2003.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/31568/ieodrev.txt

Source: https://packetstormsecurity.com/files/31568/ieodrev.txt.html

Related posts
Advisories

Secunia Security Advisory 15661

Advisories

Secunia Security Advisory 18729

Advisories

Debian Linux Security Advisory 1144-1

Advisories

Mandriva Linux Security Advisory 2007.062