web client security ms01
Microsoft Office 2000 SR-1 Update: Web Client Security MS01-001
The Web Client Security Update for Office 2000 protects you from a vulnerability in Office 2000 that can allow login information to be sent over the Internet. Malicious Web site operators could deceiv more>>
Microsoft Security Bulletin MS01-033
Unchecked Buffer in Index Server ISAPI Extension more>> This update resolves the "Unchecked Buffer in Index Server ISAPI Extension Could Enable Web Server Compromise" security vulnerability in Windows 2000 computers running Internet Information Service (IIS) 5.0, and is discussed in Microsoft Security Bulletin MS01-033. Download now to prevent a malicious user from taking control of your Web server.<<less
IIS 5.0 Cumulative Security Update MS01-044
Prevent malicious users from disrupting the service of IIS 5.0. more>>
IIS 5.0 Cumulative Security Update MS01-044 is a software which includes every update released for Internet Information Server (IIS) 5.0 and is discussed in Microsoft Security Bulletin MS01-044. This update addresses four new vulnerabilities: two security vulnerabilities that could enable a malicious user to temporarily disrupt the service of IIS 5.0; and two security vulnerabilities that could enable a malicious user to gain unauthorized privileges on your Web server.
Instructions:
- Click the Download link to start the download, or choose a different language from the drop-down list and click Go.Do one of the following:
- To start the installation immediately, click Open or Run this program from its current location.
- To copy the download to your computer for installation at a later time, click Save or Save this program to disk.
- Once saved you will need to open the .exe file to run the program.
Requirements: Windows 2000
ForeFront Client Security Definition Updates 1.61.963.0
Install the latest Microsoft ForeFront Client Security definition updates more>>
ForeFront Client Security Definition Updates 1.61.963.0 is designed to help you install the latest Microsoft ForeFront Client Security definition updates.
You must be running an x32-based version of Windows to run an x32-based version of Microsoft ForeFront Client Security, or an x64-based version of Windows to run an x64-based version of Microsoft ForeFront Client Security.
<<lessLicense:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
License:Updater
Web Client Software Factory - June 2007 1.1
Web Client Software Factory - June 2007 is released as a simple yet effective guidance which allows architects and developers to create composite Web client applications. more>>
Web Client Software Factory - June 2007 1.1 is released as a simple yet effective guidance which allows architects and developers to create composite Web client applications.
Requirements: Windows XP/2003 Server/Vista

Wync Web Sync Client Software 1.4.0
Wyncs may be the simplest, most useful internet tool you will ever use. With ... more>> Wyncs may be the simplest, most useful internet tool you will ever use. With just this one, small application you will be ready to sync content from every Wyncs-enabled web site. For most situations the download only takes a few seconds, and the installation only a few more. Once downloaded and installed, you can sync from any Wyncs-enabled web site with just two clicks. Selected information will be instantly transferred to your choice of Palm Desktop or Microsoft Outlook.<<less
Web Client Software Factory - January 2007 1
Web Client Software Factory - January 2007 is such an easy-to-use and handy guidance which enables architects and developers to create composite Web client applications. more>>
Web Client Software Factory - January 2007 1 is such an easy-to-use and handy guidance which enables architects and developers to create composite Web client applications.
Requirements: Windows XP/2003 Server
Microsoft Office 2000 SR-1 Update: Web Client Security Update
Microsoft Office 2000 SR-1 Update: Web Client Security Update is developed to protect you from a vulnerability in Office 2000 that allows login information to be sent over the Internet. more>>
Microsoft Office 2000 SR-1 Update: Web Client Security Update is developed to protect you from a vulnerability in Office 2000 that allows login information to be sent over the Internet. Works with: Word 2000 SR-1, Excel 2000 SR-1, Outlook 2000 SR-1, PowerPoint 2000 SR-1, Access 2000 SR-1, FrontPage 2000 SR-1, Publisher 2000 SR-1, PhotoDraw 2000, Version 2, PhotoDraw 2000, Version 1, Microsoft Project 2000.
<<lessMicrosoft Forefront Client Security Evaluation Edition
MS Forefront Client Security provides unified malware protection for business desktops, laptops and server operating systems more>>
Built on the same highly successful Microsoft protection technology already used by millions of people worldwide, Forefront Client Security helps guard against emerging threats, such as spyware and rootkits, as well as against traditional threats, such as viruses, worms, and Trojan horses.
By delivering simplified administration through central management and providing critical visibility into threats and vulnerabilities, Forefront Client Security helps you protect your business with confidence and efficiency. Forefront Client Security integrates with your existing infrastructure software, such as Active Directory, and complements other Microsoft security technologies for protection and control
Supported Operating Systems: Windows Server 2003 R2 Enterprise Edition (32-Bit x86); Windows Server 2003 R2 Standard Edition (32-bit x86); Windows Server 2003 Service Pack 2
Pubet client 0.9.5.2
Pubet client is a free Web application which enables your PC to be a Web site more>>
Microsoft Forefront Client Security Installation Tool EVALtoRTM
Microsoft Forefront Client Security Installation Tool EVALtoRTM is developed to be a helpful tool which enables you to upgrade an evaluation version of Microsoft Forefront Client Security to a full retail version of Microsoft Forefront Client Security. more>> <<less
AvantGo Desktop and Web Client 3.0
Get up-to-date information from the web on your Palm. more>>
X10d Web Player 0.7.1
To work with X10d Web applications users have to download and install X10d Web Player. X10d Web Player is a universal client. It will work with all X10d Web applications more>> <<less
WebFerret 1.3001
Web search client for Windows 95 and NT4. The fastestway to search all the major web search engines on the net today. more>>
Microsoft Web Client NTLM Authentication Vulnerability Patch (Windows Me) MS01-001
Microsoft Web Client NTLM Authentication Vulnerability Patch (Windows Me) MS01-001 is regarded as an innovative and versatile patch which eliminates a security vulnerability in a component that ships with Microsoft Office 2000, Windows 2000, and Windows Me. more>>
Microsoft Web Client NTLM Authentication Vulnerability Patch (Windows Me) MS01-001 is regarded as an innovative and versatile patch which eliminates a security vulnerability in a component that ships with Microsoft Office 2000, Windows 2000, and Windows Me.
The vulnerability could, under certain circumstances, allow a malicious user to obtain cryptographically protected logon credentials from another user when requesting an Office document from a Web server.
The Web Extender Client (WEC) is a component that ships as part of Office 2000, Windows 2000, and Windows Me. WEC allows IE to view and publish files via Web folders, similar to viewing and adding files in a directory through Windows Explorer. Due to an implementation flaw, WEC does not respect the IE Security settings regarding when NTLM authentication will be performed. Instead, WEC will perform NTLM authentication with any server that requests it. If a user established a session with a malicious user's Web site, either by browsing to the site or by opening an HTML mail that initiated a session with it, an application on the site could capture the user's NTLM credentials. The malicious user could then use an offline brute-force attack to derive the password or, with specialized tools, could submit a variant of these credentials in an attempt to access protected resources.
The vulnerability would only provide the malicious user with the cryptographically protected NTLM authentication credentials of another user. It would not, by itself, allow a malicious user to gain control of another user's computer or to gain access to resources to which that user was authorized access. In order to leverage the NTLM credentials (or a subsequently cracked password), the malicious user would have to be able to remotely logon to the target system.
However, best practices dictate that remote logon services be blocked at border devices, and if these practices were followed, they would prevent an attacker from using the credentials to logon to the target system.
Frequently asked questions regarding this vulnerability can be found here.