cumulative
Adobe Reader Cumulative Update 7.07
adds functions and security to 7.0x versions other than 7.05 more>> The Adobe Reader 7.0.7 update adds new functionality, fixes a number of bugs, and is more secure. Adobe recommends that all Adobe Reader 7.0, 7.0.1, 7.0.2, or 7.0.3 users apply this update.<<less
IIS 5.0 Cumulative Security Update MS01-044
Prevent malicious users from disrupting the service of IIS 5.0. more>>
IIS 5.0 Cumulative Security Update MS01-044 is a software which includes every update released for Internet Information Server (IIS) 5.0 and is discussed in Microsoft Security Bulletin MS01-044. This update addresses four new vulnerabilities: two security vulnerabilities that could enable a malicious user to temporarily disrupt the service of IIS 5.0; and two security vulnerabilities that could enable a malicious user to gain unauthorized privileges on your Web server.
Instructions:
- Click the Download link to start the download, or choose a different language from the drop-down list and click Go.Do one of the following:
- To start the installation immediately, click Open or Run this program from its current location.
- To copy the download to your computer for installation at a later time, click Save or Save this program to disk.
- Once saved you will need to open the .exe file to run the program.
Requirements: Windows 2000
IIS 4.0 Cumulative Security Update MS01-044
IIS 4.0 Cumulative Security Update MS01-044 is a program consisting of the updates released for Internet Information Server (IIS) 4.0 since the release of Windows NT 4.0 Service Pack 5, including two new updates. more>> <<less
Microsoft Internet Explorer 5.01 SP2 Cumulative Se
The 11 February 2002 Cumulative Patch for Internet Explorer update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed more>> The "11 February 2002 Cumulative Patch for Internet Explorer" update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed in Microsoft Security Bulletin MS02-005. Download now to protect your computer from these vulnerabilities, the most serious of which could allow an attacker to run code on your computer.<<less
Cumulative Security Update for Internet Explorer 1.0
Microsoft Security Bulletin MS04-038 Cumulative Security Update for Internet Explorer (834707) Impact of Vulnerability: Remote Code Execution Maximum Severity Rating: Critical Recommendation: more>> Microsoft Security Bulletin MS04-038 Cumulative Security Update for Internet Explorer (834707)
Impact of Vulnerability: Remote Code Execution
Maximum Severity Rating: Critical
Recommendation: Customers should install the update immediately.
Security Update Replacement: This update replaces the update that is included with Microsoft Security Bulletin MS04-025. That update is also a cumulative update.
<<lessMicrosoft Internet Explorer 5.5 SP2 - Cumulative S
Security vulnerabilities update more>> This update eliminates all known security vulnerabilities affecting Internet Explorer 5.5 Service Pack 2 (SP2) and Internet Explorer 6, and addresses the "Incorrect Content-Disposition Handling Can Cause IE to Execute Code Automatically" security vulnerabilities in Internet Explorer 5.5 SP2 and 6, and is discussed in Microsoft Security Bulletin MS01-058. Download now to protect your computer from all previously discussed security vulnerabilities affecting Internet Explorer 5.5 SP2 and 6, as well as three newly discovered vulnerabilities: the File Execution vulnerability, a variant of the Frame Domain Verification vulnerability, and the File Name Spoofing vulnerabilty.<<less
Microsoft Excel 2000 Cumulative Update Patch MS02-031
Microsoft Excel 2000 Cumulative Update Patch will make you feel pleasant because it provides you with the latest security and performance improvements available for Microsoft Excel 2000. more>>
Microsoft Excel 2000 Cumulative Update Patch MS02-031 will make you feel pleasant because it provides you with the latest security and performance improvements available for Microsoft Excel 2000.
This update prevents Excel from potentially running macros without warning. It is part of Microsoft's continued effort to provide the latest product updates to customers.
<<lessMicrosoft Internet Explorer 6 - Cumulative Securit 1.0
Security vulnerabilities update more>> This update eliminates all known security vulnerabilities affecting Internet Explorer 5.5 Service Pack 2 (SP2) and Internet Explorer 6, and addresses the "Incorrect Content-Disposition Handling Can Cause IE to Execute Code Automatically" security vulnerabilities in Internet Explorer 5.5 SP2 and 6, and is discussed in Microsoft Security Bulletin MS01-058. Download now to protect your computer from all previously discussed security vulnerabilities affecting Internet Explorer 5.5 SP2 and 6, as well as three newly discovered vulnerabilities: the File Execution vulnerability, a variant of the Frame Domain Verification vulnerability, and the File Name Spoofing vulnerabilty.<<less
Internet Explorer - Cumulative Security Update (83 1.0
Who should read this document: Customers who are using Microsoft? Internet Explorer Impact of vulnerability: Remote Code Execution Maximum Severity Rating: Critical Recommendation: Systems more>> Who should read this document: Customers who are using Microsoft? Internet Explorer
Impact of vulnerability: Remote Code Execution
Maximum Severity Rating: Critical
Recommendation: Systems administrators should apply the security update immediately.
This is a cumulative update that includes the functionality of all the previously-released updates for Internet Explorer 5.01, Internet Explorer 5.5, and Internet Explorer 6.0. Additionally, it eliminates the following three newly-discovered vulnerabilities:
- A vulnerability that involves the cross-domain security model of Internet Explorer. The cross domain security model of Internet Explorer keeps windows of different domains from sharing information. This vulnerability could result in the execution of script in the Local Machine zone. To exploit this vulnerability, an attacker would have to host a malicious Web site that contained a Web page designed to exploit the vulnerability and then persuade a user to view the Web page. The attacker could also create an HTML e-mail message designed to exploit the vulnerability and persuade the user to view the HTML e-mail message. After the user has visited the malicious Web site or viewed the malicious HTML e-mail message an attacker who exploited this vulnerability could access information from other Web sites, access files on a users system, and run arbitrary code on a users system. This code would run in the security context of the currently logged on user.
- A vulnerability that involves performing a drag-and-drop operation with function pointers during dynamic HTML (DHTML) events in Internet Explorer. This vulnerability could allow a file to be saved in a target location on the users system if the user clicked a link. No dialog box would request that the user approve this download. To exploit this vulnerability, an attacker would have to host a malicious Web site that contained a Web page that had a specially-crafted link. The attacker would then have to persuade a user to click that link. The attacker could also create an HTML e-mail message that had a specially-crafted link, and then persuade the user to view the HTML e-mail message and then click the malicious link. If the user clicked this link, code of the attackers choice would not be executed, but could be saved on the users computer in a targeted location.
- A vulnerability that involves the incorrect parsing of URLs that contain special characters. When combined with a misuse of the basic authentication feature that has "username:password@" at the beginning of a URL, this vulnerability could result in a misrepresentation of the URL in the address bar of an Internet Explorer window. To exploit this vulnerability, an attacker would have to host a malicious Web site that contained a Web page that had a specially-crafted link. The attacker would then have to persuade a user to click that link. The attacker could also create an HTML e-mail message that had a specially-crafted link, and then persuade the user to view the HTML e-mail message and then click the malicious link. If the user clicked this link, an Internet Explorer window could open with a URL of the attackers choice in the address bar, but with content from a Web Site of the attackers choice inside the window. For example, an attacker could create a link that once clicked on by a user would display http://www.tailspintoys.com in the address bar, but actually contained content from another Web Site, such as http://www.wingtiptoys.com. (Note: these web sites are provided as an example only, and both redirect to http://www.microsoft.com.)
Microsoft Internet Explorer 5.5 SP1 Cumulative Sec Q316059
The 11 February 2002 Cumulative Patch for Internet Explorer update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed more>> The "11 February 2002 Cumulative Patch for Internet Explorer" update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed in Microsoft Security Bulletin MS02-005. Download now to protect your computer from these vulnerabilities, the most serious of which could allow an attacker to run code on your computer.<<less
Microsoft Internet Explorer 6.0 Cumulative Securit Q316059
The 11 February 2002 Cumulative Patch for Internet Explorer update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed more>> The "11 February 2002 Cumulative Patch for Internet Explorer" update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed in Microsoft Security Bulletin MS02-005. Download now to protect your computer from these vulnerabilities, the most serious of which could allow an attacker to run code on your computer.<<less
Microsoft Internet Explorer 5.5 SP2 Cumulative Sec Q316059
The 11 February 2002 Cumulative Patch for Internet Explorer update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed more>> The "11 February 2002 Cumulative Patch for Internet Explorer" update eliminates all known security vulnerabilities affecting Internet Explorer 6, as well as six new vulnerabilities, and is discussed in Microsoft Security Bulletin MS02-005. Download now to protect your computer from these vulnerabilities, the most serious of which could allow an attacker to run code on your computer.<<less
Windows Cumulative Patch for Internet Explorer Aug
Cumulative Patch for Internet Explorer more>>
Microsoft Internet Explorer 6.0 Cumulative Patch Q319182
This is a cumulative patch that includes the functionality of all previously released patches for IE 5.01, 5.5 and IE 6 more>> This is a cumulative patch that includes the functionality of all previously released patches for IE 5.01, 5.5 and IE 6. In addition, it eliminates the following two newly discovered vulnerabilities:
- A vulnerability in the zone determination function that could allow a script embedded in a cookie to be run in the Local Computer zone. While HTML scripts can be stored in cookies, they should be handled in the same zone as the hosting site associated with them, in most cases the Internet zone. An attacker could place script in a cookie that would be saved to the user?s hard disk. When the cookie was opened by the site the script would then run in the Local Computer zone, allowing it to run with fewer restrictions than it would otherwise have.
- A vulnerability in the handling of object tags that could allow an attacker to invoke an executable already present on the user?s machine. A malicious user could create HTML web page that includes this object tag and cause a local program to run on the victim?s machine.
Internet Explorer 5.5 Cumulative Vulnerability Patch 3.04
Protect your system from security vulnerabilities in Internet Explorer 5.5 SP2. more>>
Internet Explorer 5.5 Cumulative Vulnerability Patch 3.04 provides you a tool that eliminates all previously addressed security vulnerabilities affecting Internet Explorer 6, as well as two additional newly discovered vulnerabilities.
Major Features:
- Functionality of all previously released patches for Internet Explorer 6,
- Eliminate the following newly discovered vulnerabilities:
-
- One that occurs because Internet Explorer does not properly determine an object type returned from a Web server in a pop-up window,
- One that occurs because Internet Explorer does not properly determine an object type returned from a Web server during XML data binding.
- Both flaws could have the effect of allowing an attacker to run arbitrary code on a user's system.
