积极预防 及时发现
快速响应 力保恢复
Internet Explorer 5.5对HTML格式的电子邮件的支持功能允许攻击者通过为附件设置...
发布时间:2001-05-03 信息来源:管理员

CNCVE编号:CNCVE-20010154 CVE编号:CVE-2001-0154 安全级别:中 漏洞中文描述: Internet Explorer 5.5对HTML格式的电子邮件的支持功能允许攻击者通过为附件设置特殊的MIME类型来执行攻击(自动执行附件中的程序)。 漏洞英文描述: HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly. 漏洞参考: Reference: BUGTRAQ:20010330 Incorrect MIME Header Can Cause IE to Execute E-mail Attachment Reference: URL:http://marc.theaimsgroup.com/?l=bugtraq&m=98596775905044&w=2 Reference: MS:MS01-020 Reference: URL:http://www.microsoft.com/technet/security/bull 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误