|
|
Info |
Last Modified |
| about 1 year ago |
|
|
|
|
|
Description |
Microsoft Internet Explorer contains a flaw related to the instantiation of the msoe.dll COM that may allow an attacker to execute arbitrary code.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Rumored / Private
|
|
Technical |
It is currently unknown whether the vulnerability is an issue of Microsoft Internet Explorer or the respective dll. The dll is part of Microsoft Outlook. If this product is not installed, Internet Explorer is not vulnerable.
|
|
Solution |
Currently, there are no known upgrades or patches to correct this issue. It is possible to correct the flaw by implementing the following workaround(s): disable ActiveX
|
|
Products |
|
Internet Explorer
 |
6.0 |
|
|
|
|
Credit |
- nop - nop
xsec.org - XSec
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|