VYPR
Unrated severityNVD Advisory· Published Feb 21, 2000· Updated Jun 16, 2026

CVE-2000-0160

CVE-2000-0160

Description

The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.

Affected products

4
  • cpe:2.3:a:microsoft:ie:4.x:*:*:*:*:*:*:*
  • cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*
    • (no CPE)range: 4.x, 5.x
  • cpe:2.3:a:microsoft:outlook:*:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.