Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2011-0096
Description:The MHTML protocol handler in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly handle a MIME format in a request for content blocks in a document, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site that is visited in Internet Explorer, aka "MHTML Mime-Formatted Request Vulnerability."
Test IDs: 1.3.6.1.4.1.25623.1.0.902285   1.3.6.1.4.1.25623.1.0.902409  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2011-0096
BugTraq ID: 46055
http://www.securityfocus.com/bid/46055
Cert/CC Advisory: TA11-102A
http://www.us-cert.gov/cas/techalerts/TA11-102A.html
CERT/CC vulnerability note: VU#326549
http://www.kb.cert.org/vuls/id/326549
http://www.exploit-db.com/exploits/16071
http://www.80vul.com/webzine_0x05/0x05%20IE%E4%B8%8BMHTML%E5%8D%8F%E8%AE%AE%E5%B8%A6%E6%9D%A5%E7%9A%84%E8%B7%A8%E5%9F%9F%E5%8D%B1%E5%AE%B3.html
Microsoft Security Bulletin: MS11-026
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-026
http://osvdb.org/70693
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6956
http://www.securitytracker.com/id?1025003
http://secunia.com/advisories/43093
http://www.vupen.com/english/advisories/2011/0242
XForce ISS Database: ms-win-mhtml-info-disclosure(65000)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65000




© 1998-2025 E-Soft Inc. All rights reserved.