Windows Updates- Active X

The DHTML Edit control is an ActiveX control, which enables users to edit HTML text and preview the results within Internet Explorer. A malicious operator using a "safe for scripting" version of this control, can trick a user into entering sensitive data into the control, and then upload this information. In addition, if the remote user is aware of a file name on the local machine, it might be possible to systematically load this file into the DHTML Edit control, and then upload this data. This update resolves this vulnerability by allowing the web site to load data only if it is part of its domain..

Update for Internet Explorer 4

Update for Internet Explorer 5

Back