Microsoft Internet Explorer Java Logging Executable Code Vulnerability
BID:5491
Info
Microsoft Internet Explorer Java Logging Executable Code Vulnerability
| Bugtraq ID: | 5491 |
| Class: | Design Error |
| CVE: |
CVE-2002-0979 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 17 2002 12:00AM |
| Updated: | Jul 11 2009 03:56PM |
| Credit: | Vulnerability discovery credited to Jelmer <[email protected]>. |
| Vulnerable: |
Microsoft Internet Explorer 6.0 |
| Not Vulnerable: | |
Discussion
Microsoft Internet Explorer Java Logging Executable Code Vulnerability
A problem with Microsoft Internet Explorer may provide a vector for the storage of malicious code within systems.
Under some circumstances, the java logging feature in Internet Explorer may provide a place for the storage of malicious code. When a page is visited by Internet Explorer, it may be possible to log executable code directly to the file created by java logging.
A problem with Microsoft Internet Explorer may provide a vector for the storage of malicious code within systems.
Under some circumstances, the java logging feature in Internet Explorer may provide a place for the storage of malicious code. When a page is visited by Internet Explorer, it may be possible to log executable code directly to the file created by java logging.
Exploit / POC
Microsoft Internet Explorer Java Logging Executable Code Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Internet Explorer Java Logging Executable Code Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Microsoft Internet Explorer Java Logging Executable Code Vulnerability
References:
References: