4.3
CVSSv2

CVE-2000-1105

Published: 09/01/2001 Updated: 05/09/2008
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The ixsso.query ActiveX Object is marked as safe for scripting, which allows malicious web site operators to embed a script that remotely determines the existence of files on visiting Windows 2000 systems that have Indexing Services enabled.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft indexing service

Exploits

<!-- source: wwwsecurityfocuscom/bid/1933/info Microsoft Windows 2000 Indexing Services is a search engine that will allow a user to perform full-text searches of online sites using their browsers Search results include Word, Excel, PowerPoint, and HTML documents By default, this service is not enabled in Windows 2000 A malicious w ...