Free Downloads Center
e.g. Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch 6-10-2000

Categories

Latest Reviews

Easy Time Logs Free

Easy Time Logs Free
Easy Time Logs Free, as the name suggests is an easy time tracking, timesheet and project management utility.

Eschelbacher Enterprises WebEditor

Eschelbacher Enterprises WebEditor
This amazing tool with its wizard capabilities allows you to make direct online changes to web pages and save them within no time.

Subscribe

Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch 6-10-2000 Español: Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch 6-10-2000

Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch 6-10-2000

Editor's rating  
Users' rating   (0 votes) Rate it!
License Freeware /
Downloads this week 1803
Publisher Microsoft Corp.
File size 2K
Date added 10-Jun-2000
Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch screenshot

Enlarge screenshot

Publisher's description
Submit your review

Microsoft has released a patch that eliminates two security vulnerabilities in Microsoft® Internet Explorer. The vulnerabilities involve how IE handles digital certificates; under a very daunting set of circumstances, they couldallow a malicious web site operator to pose as a trusted web site. Two vulnerabilities have been identified in the way IE handles digital certificates: When a connection to a secure server is made via either an image or a frame, IE only verifiesthat the server's SSL certificate was issued by a trusted root - it does not verify the server name or the expiration date. When a connection is made via any other means, all expected validation is performed. Even if the initial validation is made correctly, IE does not re-validate the certificate if a new SSL session is established with the same server during the same IE session. The circumstances under which these vulnerabilities could be exploited are fairly restricted. In bothcases, it is likely that the attacker would need to either carry out DNS cache poisoning or physically replace the server in order to successfully carry out an attack via this vulnerability. The timing would be especially crucial in the second case, as the malicious user would need to poison the cache or replace the machine during the interregnum between the two SSL sessions.

Visit homepage of Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch

Download Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch 6-10-2000

the exploited microsoft explorer vulnerabilities scanner number validation poison the well carry it easy web proxy ssl create certificate cache preview digital image recovery

Programs related to Microsoft Internet Explorer ''SSL Certificate Validation'' Vulnerabilities patch

Copyright © 2001-2007, Free Downloads Center.