oval:org.mitre.oval:def:6108

Definition Id: oval:org.mitre.oval:def:6108
 
Oval ID: oval:org.mitre.oval:def:6108
Title: Blended Threat Remote Code Execution Vulnerability
Description: Apple Safari on Mac OS X, and before 3.1.2 on Windows, does not prompt the user before downloading an object that has an unrecognized content type, which allows remote attackers to place malware into the (1) Desktop directory on Windows or (2) Downloads directory on Mac OS X, and subsequently allows remote attackers to execute arbitrary code on Windows by leveraging an untrusted search path vulnerability in (a) Internet Explorer 7 on Windows XP or (b) the SearchPath function in Windows XP, Vista, and Server 2003 and 2008, aka a "Carpet Bomb" and a "Blended Threat Elevation of Privilege Vulnerability," a different issue than CVE-2008-1032. NOTE: Apple considers this a vulnerability only because the Microsoft products can load application libraries from the desktop and, as of 20080619, has not covered the issue in an advisory for Mac OS X.
Family: windows Class: vulnerability
Reference(s): CVE-2008-2540
Version: 3
Platform(s): Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Microsoft Windows Vista
Product(s): Microsoft Internet Explorer
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:754
 
Oval ID: oval:org.mitre.oval:def:754
Title: Microsoft Windows XP (x86) SP2 is installed
Description: A version of Microsoft Windows XP (x86) Service Pack 2 is installed.
Family: windows Class: inventory
Reference(s): cpe:/o:microsoft:windows_xp::sp2:x86
Version: 7
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:6108
oval:org.mitre.oval:def:6108
Definition Id: oval:org.mitre.oval:def:5631
 
Oval ID: oval:org.mitre.oval:def:5631
Title: Microsoft Windows XP (x86) SP3 is installed
Description: A version of Microsoft Windows XP (x86) Service Pack 3 is installed.
Family: windows Class: inventory
Reference(s): cpe:/o:microsoft:windows_xp::sp3:x86
Version: 6
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:6108
oval:org.mitre.oval:def:6108
Definition Id: oval:org.mitre.oval:def:4193
 
Oval ID: oval:org.mitre.oval:def:4193
Title: Microsoft Windows XP x64 Edition SP2 is installed
Description: A version of Microsoft Windows XP Professional x64 Edition Service Pack 2 is installed.
Family: windows Class: inventory
Reference(s): cpe:/o:microsoft:windows_xp::sp2:x64
Version: 9
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:6108
oval:org.mitre.oval:def:6108
Definition Id: oval:org.mitre.oval:def:627
 
Oval ID: oval:org.mitre.oval:def:627
Title: Microsoft Internet Explorer 7 is installed
Description: A version of Microsoft Internet Explorer 7 is installed.
Family: windows Class: inventory
Reference(s): cpe:/a:microsoft:ie:7
Version: 6
Platform(s): Microsoft Windows XP
Microsoft Windows Server 2003
Microsoft Windows Vista
Product(s): Microsoft Internet Explorer 7
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:6108
oval:org.mitre.oval:def:6108
Definition Id: oval:org.mitre.oval:def:720
 
Oval ID: oval:org.mitre.oval:def:720
Title: Microsoft Windows XP Professional x64 Edition SP1 is installed
Description: A version of Microsoft Windows XP Professional x64 Edition Service Pack 1 is installed.
Family: windows Class: inventory
Reference(s): cpe:/o:microsoft:windows_xp::sp1:x64
Version: 11
Platform(s): Microsoft Windows XP
Product(s):
Definition Synopsis:
Referenced By:
oval:org.mitre.oval:def:6108
oval:org.mitre.oval:def:6108