Overview
The download behavior of Internet Explorer 5.0 can be used to perform arbitrary operations on local files.
Description
Internet Explorer 5.0 includes a dynamic HTML (DHTML) behavior called "download behavior." A "behavior" is a software object that specifies some behavior of a web page element, for example, the behavior of an object when the mouse is placed over the object. Some behaviors are included by default in IE 5, including the download behavior. This feature allows a web site to download files for use in a client side script. For more information, see |
Impact
Malicious web site operators can retrieve files from your system. |
Solution
Upgrade to the latest version of Internet Explorer or download a patch as described in http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS99-040.asp. |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | ||
Temporal | ||
Environmental |
References
- http://www.microsoft.com/security/bulletins/ms99-040.asp,
- http://www.microsoft.com/security/bulletins/ms99-040faq.asp
- http://support.microsoft.com/support/kb/articles/Q242/5/42.asp
- http://msdn.microsoft.com/scripting/default.htm?/scripting/scriptlets/doc/letimplDHTML.htm
- http://msdn.microsoft.com/workshop/author/behaviors/overview.asp
- http://msdn.microsoft.com/workshop/author/behaviors/reference/behaviors/download.asp
- http://xforce.iss.net/static/3278.php
- http://www.ciac.org/ciac/bulletins/k-002.shtml
Acknowledgements
This document was written by Shawn V Hernan.
Other Information
CVE IDs: | CVE-1999-0891 |
Severity Metric: | 3.18 |
Date Public: | 1999-09-28 |
Date First Published: | 2001-08-15 |
Date Last Updated: | 2001-08-21 20:59 UTC |
Document Revision: | 3 |