Microsoft Internet Explorer EMBED Vulnerability
BID:76
Info
Microsoft Internet Explorer EMBED Vulnerability
| Bugtraq ID: | 76 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Unknown |
| Published: | Apr 14 1998 12:00AM |
| Updated: | Apr 14 1998 12:00AM |
| Credit: | |
| Vulnerable: |
Microsoft Internet Explorer Macintosh Edition 4.0 a Microsoft Internet Explorer Macintosh Edition 3.1 Microsoft Internet Explorer Macintosh Edition 3.0 Microsoft Internet Explorer for Unix 4.0 Microsoft Internet Explorer 4.1 for Windows NT 4 Microsoft Internet Explorer 4.1 for Windows 95 Microsoft Internet Explorer 4.0 for Windows NT 4 Microsoft Internet Explorer 4.0 for Windows 95 |
| Not Vulnerable: |
Microsoft Internet Explorer 4.0 for Windows NT 3 Microsoft Internet Explorer 4.0 for Windows 3.1 Microsoft Internet Explorer 4.0 for WfW Microsoft Internet Explorer 3.2 for Windows NT 4 Microsoft Internet Explorer 3.2 for Windows NT 3 Microsoft Internet Explorer 3.2 for Windows 95 Microsoft Internet Explorer 3.2 for Windows 3.1 Microsoft Internet Explorer 3.2 for WfW Microsoft Internet Explorer 3.0 for Windows NT 4 Microsoft Internet Explorer 3.0 for Windows NT 3 Microsoft Internet Explorer 3.0 for Windows 95 Microsoft Internet Explorer 3.0 for Windows 3.1 Microsoft Internet Explorer 3.0 for WfW |
Discussion
Microsoft Internet Explorer EMBED Vulnerability
Internet Explorer can be caused to run arbitrary code remotely via <EMBED> tags with long arguments.
Internet Explorer can be caused to run arbitrary code remotely via <EMBED> tags with long arguments.
Exploit / POC
Microsoft Internet Explorer EMBED Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Internet Explorer EMBED Vulnerability
Solution:
Apply the appropiate fix for your platform and version from
http://www.microsoft.com/ie/security/embed.htm
Solution:
Apply the appropiate fix for your platform and version from
http://www.microsoft.com/ie/security/embed.htm
References
Microsoft Internet Explorer EMBED Vulnerability
References:
References:
- Embed Issue Security Information Page (Microsoft)