[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Internet Explorer Security Feature Bypass Vulnerability - CVE-2019-0995

ID: oval:org.secpod.oval:def:54693Date: (C)2019-05-15   (M)2024-03-06
Class: VULNERABILITYFamily: windows




A security feature bypass vulnerability exists when urlmon.dll improperly handles certain Mark of the Web queries. The vulnerability allows Internet Explorer to bypass Mark of the Web warnings or restrictions for files downloaded or created in a specific way. In a web-based attack scenario, an attacker would need to host a malicious file that is designed to exploit the vulnerability and then convince a user to download the malicious file and then open the file in Internet Explorer. The security update addresses the vulnerability by modifying how urlmon.dll handles Mark of the Web queries.

Platform:
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Windows 10
Product:
Microsoft Internet Explorer 11
Reference:
CVE-2019-0995
CVE    1
CVE-2019-0995
CPE    18
cpe:/o:microsoft:windows_server_2016:::x64
cpe:/o:microsoft:windows_10:1607:::x64
cpe:/o:microsoft:windows_10:1607:::x86
cpe:/a:microsoft:ie:11
...

© SecPod Technologies