ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Become a ZDNet.co.uk member

Resources Downloads

Download Now

Microsoft IIS4 "Cross-Site Scripting" Vulnerability Patch (MS00-060)


License Free
Requirements Windows NT 4.0, Internet Information Server 4.0
Downloads 113 Limitations None
Publisher Microsoft File Size 473k
Date added 09 Nov 2000 Check your speed

This patch eliminates security vulnerabilities in the Microsoft Internet Information Server. The vulnerabilities could allow a malicious Web site operator to misuse another Web site as a means of attacking users. This vulnerability, known as Cross-Site Scripting (CSS), results when Web applications don't properly validate inputs before using them in dynamic Web pages. If malicious Web site operators were able to lure a user to their site, and had identified a third-party Web site that was vulnerable to CSS, they could potentially use the vulnerability to ""inject"" script into a Web page created by the other Web site, which would then be delivered to the user. The net effect would be to cause the malicious user's script to run on the user's machine. The vulnerability can affect any software that runs on a Web server, accepts user input, and blindly uses it to generate Web pages. Microsoft recommends that all vendors check their products to see if any are affected by the vulnerability, and initiated a check of its own products, as well. Several features in IIS were found to be affected--some were found by Microsoft internal teams, and others were identified by customers--and this patch eliminates all of them.

Read the FAQ for more information.

Download Now

Did you find this download useful?
9 out of 18 users found this download useful


People who downloaded this software also downloaded...

RIP Killer Popup Blocker 3.12

Keep your surfing private while stopping annoying pop-ups and Flash ads.

More info +


SolidShare 2.6.11

Connect anyone on your network to the Internet with one ISP account and one modem.

More info +


SpyWall Anti-Spyware 1.4.3.1

Remove spyware and keep them out with a browser sandbox.

More info +


DoNotDisturb 2.3

Block access to selected programs so you can concentrate on your work.

More info +


Watch N Catch 1.0

Protect your assets with an IP-based video surveillance system.

More info +


Child Computer Lock 1.6

Protect your privacy by locking your computer.

More info +


WinSettings Pro 2.1

Optimize your PC for better performance and reliability.

More info +


EasyCryptor 1

Encrypt and decrypt any files and send results to your e-mail address.

More info +


Stealth KeyLogger 4.9

Get reports on keystrokes, e-mails, instant-messenging discussions, and Web sites visited.

More info +


Signed Sealed & Delivered 1.1.4

Put your confidential information in a secure encrypted vault for transfer over the Web.

More info +




Download

Embarcadero Power SQL

Embarcadero PowerSQL simplifies SQL development for application developers with many features for improving productivity and reducing errors.

  • Downloads: 2,971
  • Requirements:
  • License: Vendor registration required
  • Publisher: Embarcadero
  • Size: 0

Download Now

Sentry Posts Blog

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment

The Google Apple Merger: Fantasy or Fu...

The Google Apple Merger: Fantasy or Future? Author: Eric Everson, Founder MyMobiSafe.com Market research suggests that Microsoft controls upwards of 90% of the respective computer-based... More

1 comment

Trades Unions against ID Cards

The Trades Union Congress (TUC) has backed up airport workers protesting against ID cards, the Financial Times reports. In a letter to Home Secretary Jacqui Smith, the TUC said it... More

Post a comment

Featured Talkback

It seems to me this is a burden being placed on the wrong shoulders. There is not an It system in the world that can stop an individual taking information in their heads and spewing out at the nearest undesirable third party.

By: RonaldWilkins

Read full story:
Deloitte: People are still weakest security link

DOWNLOAD

Security Essentials

Security Downloads

There are masses of security suites out there for small businesses. Here's a selection to get you started

Editor’s Rating
1 Norton 360™
2 AVG Anti-Virus Free Edition Rating: 10
3 PC Tools AntiVirus Free Edition
4 Kaspersky Internet Security

See All Software

In association with Symantec