Microsoft IE5 Offline Browsing Pack Task Scheduler Vulnerability
BID:828
Info
Microsoft IE5 Offline Browsing Pack Task Scheduler Vulnerability
| Bugtraq ID: | 828 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Nov 29 1999 12:00AM |
| Updated: | Nov 29 1999 12:00AM |
| Credit: | Reported to Microsoft by Arne Vidstrom and Svante Sennmark. |
| Vulnerable: |
Microsoft Internet Explorer 5.0 for Windows NT 4 Microsoft Internet Explorer 5.0 for Windows 98 Microsoft Internet Explorer 5.0 for Windows 95 |
| Not Vulnerable: | |
Exploit / POC
Microsoft IE5 Offline Browsing Pack Task Scheduler Vulnerability
see discussion
see discussion
Solution / Fix
Microsoft IE5 Offline Browsing Pack Task Scheduler Vulnerability
Solution:
IE 5.01 is not susceptible to this vulnerability. The task Scheduler that is included with 5.01 uses signature verification to check that all scheduled tasks were created by the administrator of the local machine.
It can be downloaded at:
http://www.microsoft.com/msdownload/iebuild/ie501_win32/en/ie501_win32.htm
Solution:
IE 5.01 is not susceptible to this vulnerability. The task Scheduler that is included with 5.01 uses signature verification to check that all scheduled tasks were created by the administrator of the local machine.
It can be downloaded at:
http://www.microsoft.com/msdownload/iebuild/ie501_win32/en/ie501_win32.htm
References
Microsoft IE5 Offline Browsing Pack Task Scheduler Vulnerability
References:
References: