[16269] in bugtraq

home help back first fref pref prev next nref lref last post

Re: IE 5.5/5.x for Win98 may execute arbitrary files that can be

daemon@ATHENA.MIT.EDU (Ben Greenbaum)
Wed Aug 16 13:30:21 2000

Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id:  <Pine.GSO.4.21.0008151809530.14899-100000@mail>
Date:         Tue, 15 Aug 2000 18:14:40 -0700
Reply-To: Ben Greenbaum <bgreenbaum@SECURITYFOCUS.COM>
From: Ben Greenbaum <bgreenbaum@SECURITYFOCUS.COM>
To: BUGTRAQ@SECURITYFOCUS.COM

> Georgi Guninski security advisory #18, 2000
>
> IE 5.5/5.x for Win98 may execute arbitrary files that can be accessed
> thru Microsoft Networking. Also local Administrator compromise at least
> on default Windows 2000.
>
> Systems affected:
> For remote file execution: IE 5.5,5.x/Windows 98, the files must be
> accessible thru Microsoft Networking.
> For local Administrator compromise on Windows 2000: default Windows 2000
> installation, I have not tested with IE 5.5 installed, but believe to
> work

Replicated on Windows 2000 with IE 5.5

Ben Greenbaum
Director of Site Content
SecurityFocus
http://www.securityfocus.com

home help back first fref pref prev next nref lref last post