The scriptlet.typelib ActiveX control is marked as "safe for scripting" for Internet Explorer, which allows a remote attacker to execute arbitrary commands as demonstrated by Bubbleboy.
Link | Tags |
---|---|
http://ciac.llnl.gov/ciac/bulletins/j-064.shtml | third party advisory government resource |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-032 | vendor advisory |
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ240308 | vendor advisory |
http://www.securityfocus.com/bid/598 | vdb entry |