积极预防 及时发现
快速响应 力保恢复
Internet Explorer 5.5及其早期版本允许远程攻击者获得缓冲区内容的目录并在本地计算...
发布时间:2001-07-21 信息来源:管理员

CNCVE编号:CNCVE-20010002 CVE编号:CVE-2001-0002 安全级别:高 漏洞中文描述: Internet Explorer 5.5及其早期版本允许远程攻击者获得缓冲区内容的目录并在本地计算机域中打开这个目录然后使用编译好的HTML帮助文件去执行任意程序。 漏洞英文描述: Internet Explorer 5.5 and earlier allows remote attackers to obtain the physical location of cached content and open the content in the Local Computer Zone, then use compiled HTML help (.chm) files to execute arbitrary programs. 漏洞参考: MS:MS01-015 BUGTRAQ:20001120 IE 5.x/Outlook allows executing arbitrary programs using .chm XF:ie-chm-execute-files(5567) 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:其他