The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote malicious user to install software components without prompting the user by stating that the software's manufacturer is Microsoft.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft internet explorer 5 |
||
microsoft ie 4.x |
||
microsoft outlook |