CVE-2000-0790
Last modified
CVE-2000-0790 is a vulnerability of currently unknown severity. The web-based folder display capability in Microsoft Internet Explorer 5.5 on Windows 98 allows local users to insert Trojan horse programs by modifying the Folder.htt file and using the InvokeVerb method in the ShellDefView ActiveX control to specify a default execute option for the first file that is listed in the folder.. EPSS estimates a 1.53% chance of exploitation in the next 30 days.
Description
The web-based folder display capability in Microsoft Internet Explorer 5.5 on Windows 98 allows local users to insert Trojan horse programs by modifying the Folder.htt file and using the InvokeVerb method in the ShellDefView ActiveX control to specify a default execute option for the first file that is listed in the folder.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Windows 2000 | All versions | — |
| Microsoft | Windows 98 | All versions | Gold |
| Microsoft | Windows 98se | All versions | — |
References
- http://www.securityfocus.com/bid/1571Vendor Advisory
- http://www.securityfocus.com/bid/1571Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2000-0790?
How severe is CVE-2000-0790?
How do I fix CVE-2000-0790?
Are you affected by CVE-2000-0790?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
