Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News July 2, 2009 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:1291 Date: 2006-08-31
Title: Windows Explorer Web View Script Injection Vulnerability
Description: Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code.
Version: 2 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2005-2117
Family: windows
Platform(s): Microsoft Windows 2000 Product(s): Operating System
Definition Synopsis:

OVAL is CVE Compatible