Internet Explorer 5.0 and 5.5, and Outlook Express 5.0 and 5.5, allow remote malicious users to execute scripts when Active Scripting is disabled by including the scripts in XML stylesheets (XSL) that are referenced using an IFRAME tag, possibly due to a vulnerability in Windows Scripting Host (WSH).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft outlook express 5.0 |
||
microsoft outlook express 5.5 |
||
microsoft internet explorer 5.0 |
||
microsoft internet explorer 5.5 |