CVE-2000-0596: High severity Microsoft Internet Explorer vulnerability
Internet Explorer 5.x does not warn a user before opening a Microsoft Access database file that is referenced within ActiveX OBJECT tags in an HTML document, which could allow remote attackers to execute arbitrary commands, aka the "IE Script" vulnerability.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2000-0596?
The severity of CVE-2000-0596 is considered high due to its potential to allow remote attackers to execute arbitrary commands.
How do I fix CVE-2000-0596?
To fix CVE-2000-0596, upgrade to a later version of Internet Explorer or disable the use of ActiveX controls.
What versions of Internet Explorer are affected by CVE-2000-0596?
CVE-2000-0596 affects Internet Explorer versions 4.0.1 with service pack 2 and all versions of 5.x.
What exploit does CVE-2000-0596 enable?
CVE-2000-0596 enables the execution of arbitrary commands through an unprotected Microsoft Access database file when opened via ActiveX OBJECT tags.
Is there a workaround for CVE-2000-0596?
A temporary workaround for CVE-2000-0596 is to adjust security settings in Internet Explorer to prompt before executing ActiveX controls.