• Login |
  • Search
Logo Security-Database
  • Home
  • Services
    • Security Dashboard
    • vDNA Monitoring Features
    • vDNA Monitoring Prices
  • Alerts
    • All Alerts
    • cve
    • Microsoft (Bulletin)
    • Microsoft (SA)
    • Debian
    • Mandriva
    • RedHat
    • VU-CERT
    • Cisco
    • Sun
    • Ubuntu
    • Gentoo
    • US-CERT
    • VMware
    • HP
  • Resources
    • vDNA : Vulnerability DNA API
    • vDNA : Vulnerability DNA API Documentation
    • CWE : Common Weakness Enumeration
    • CAPEC : Common Pattern Enumeration
    • DPE : Default Password Enumeration
    • CPE : Common Plateform Enumeration
    • OVAL Repository
    • OVAL Definitions
    • CVSS v2 Calculator
    • CVSS v3 Calculator
  • Blog
  • About US
    • About us
    • Contacts
    • CVE : Common Vulnerability Enumeration
    • CAPEC : Common Pattern Enumeration
    • CWE : Common Weakness Enumeration
    • OVAL : Open Vulnerability and Assessment Language
 

oval:org.mitre.oval:def:17

 
Definition Id: oval:org.mitre.oval:def:17
 
Oval ID: oval:org.mitre.oval:def:17
Title: IE GetObject Security Bypass
Description: Internet Explorer 5.01, 5.5 and 6.0 allows remote attackers to read arbitrary files via malformed requests to the GetObject function, which bypass some of GetObject's security checks.
Family: windows Class: vulnerability
Reference(s): CVE-2002-0023
Version: 3
Platform(s): Microsoft Windows 2000
Product(s): Microsoft Internet Explorer
Definition Synopsis:
  • the version of mshtml.dll is less than 6.0.2713.1100
  • AND NOT the patch q316059 is installed (Installed Components key)
  • AND NOT the patch q319282 is installed (Installed Components key)
  • AND NOT the patch q321232 is installed (Installed Components key)
  • AND NOT the patch q323759 is installed (Installed Components key)
  • AND NOT the patch q328970 is installed (Installed Components key)
  • AND NOT the patch q324929 is installed (Installed Components key)
  • AND NOT the patch q810847 is installed (Installed Components key)
  • AND NOT the patch q813489 is installed (Installed Components key)
  • AND NOT the patch q818529 is installed (Installed Components key)
  • AND NOT the patch q822925 is installed (Installed Components key)
  • AND NOT the patch q828750 is installed (Installed Components key)
  • AND NOT the patch q824145 is installed (Installed Components key)
  • AND Internet Explorer 6 is installed

COMPANY

Security-Database help your corporation foresee and avoid any security risks that may impact your IT infrastructure and business applications.

STANDARDS

CVE Compatible CWE Compatible Supporter of Making Security Measurable OVAL Repository

RECENT POSTS

Working on Common Vulnerability Scoring System v3 integration

01 August 2016

CPE Deprecated Dictionary integration

28 June 2016

MENU

  • About Security-Database
  • Contact the Team
  • vDNA Monitoring
  • Oval Repository
  • Security Dashboard

Copyright Security-Database 2006-2025 - Powered by themself ;) in 0.0248s 

Facebook rss twitter linkedin mail