A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.
Software | From | Fixed in |
---|---|---|
microsoft / ie | 5.0 | 5.0.x |
microsoft / outlook | 2000 | 2000.x |
microsoft / ie | 4.0.1 | 4.0.1.x |
microsoft / outlook_express | 4.72.2106.4 | 4.72.2106.4.x |
microsoft / outlook_express | 5.0 | 5.0.x |
microsoft / outlook_express | 4.72.3120.0 | 4.72.3120.0.x |
microsoft / ie | 4.0 | 4.0.x |
microsoft / outlook_express | 4.72.3612.1700 | 4.72.3612.1700.x |
microsoft / ie | 4.1 | 4.1.x |
microsoft / outlook | 98 | 98.x |
microsoft / ie | 5 | 5.x |
microsoft / outlook_express | 4.27.3110.1 | 4.27.3110.1.x |
microsoft / internet_explorer | 4.0 | 4.0.x |