OVAL
PRODUCTS INCLUDING OVAL NEWS — February 3, 2012 OVAL News RSS Feed SEARCH
Open Vulnerability and Assessment Language - The standard for determining vulnerability and configuration issues on computer systems
OVAL LANGUAGE — Version 5.10.1 OVAL REPOSITORY - 12852 Definitions
 OVAL Repository > View Definition

About OVAL

Documents

FAQs

OVAL in Use

Products

Interoperability

Adoption Program

OVAL Community

OVAL Board

Forums Sign-Up

Forum Archives

Free Newsletter

OVAL Repository

Latest Updates

Submit Content

Search

OVAL Language

Releases

Use Cases

OVAL Interpreter

Site Map

View Definition

NEW SEARCH : BACK
Definition Id: oval:org.mitre.oval:def:12 Version: 1  Last Modified: 2003-11-12
Title: IE v5.5,SP2 Forced Script Execution
Description: Internet Explorer 5.5 and 6.0 allows remote attackers to bypass restrictions for executing scripts via an object that processes asynchronous events after the initial security checks have been made.
Family: windows Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2002-0026
Platform(s): Microsoft Windows 2000 Product(s): Microsoft Internet Explorer
Definition Synopsis:
  • Internet Explorer 5.5 Service Pack 2 is installed
  • AND the version of mshtml.dll is less than 5.50.4913.1100
  • AND NOT the patch q316059 is installed (Installed Components key)
  • AND NOT the patch q319282 is installed (Installed Components key)
  • AND NOT the patch q321232 is installed (Installed Components key)
  • AND NOT the patch q323759 is installed (Installed Components key)
  • AND NOT the patch q328970 is installed (Installed Components key)
  • AND NOT the patch q324929 is installed (Installed Components key)
  • AND NOT the patch q810847 is installed (Installed Components key)
  • AND NOT the patch q813489 is installed (Installed Components key)
  • AND NOT the patch q818529 is installed (Installed Components key)
  • AND NOT the patch q822925 is installed (Installed Components key)
  • AND NOT the patch q828750 is installed (Installed Components key)
  • AND NOT the patch q824145 is installed (Installed Components key)
NEW SEARCH : BACK

OVAL Repository

About the Repository

OVAL Repository Forum

Latest Updates OVAL News RSS Feed

Statistics

Search

Downloads

Author’s Resources

Submit Content

Items of Interest

OVAL Archive

Terms of Use

MITRE

OVAL is co-sponsored by the National Cyber Security Division of the U.S. Department of Homeland Security. The OVAL Web site is sponsored and managed by The MITRE Corporation to enable stakeholder collaboration. Copyright © 2002 - 2012, The MITRE Corporation. All rights reserved. OVAL and the OVAL logo are registered trademarks of The MITRE Corporation.

Switch to the secure site.

Site Map

Privacy Policy

Terms of Use

Contact Us