PT-2000-1722 · Microsoft · Internet Explorer

Published

2000-10-20

·

Updated

2017-10-10

·

CVE-2000-0790

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer version 5.5
Description The issue allows local users to insert Trojan horse programs by modifying the Folder.htt file and using the InvokeVerb method in the ShellDefView ActiveX control to specify a default execute option for the first file that is listed in the folder.
Recommendations For Microsoft Internet Explorer version 5.5, consider disabling the use of the InvokeVerb method in the ShellDefView ActiveX control to minimize the risk of exploitation. Restrict access to the Folder.htt file to prevent unauthorized modifications.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-0790

Affected Products

Internet Explorer