Article ID: 169245 - Last Review: August 15, 2007 - Revision: 3.3 Update Available for "Untrusted Scripted Paste" IssueThis article was previously published under Q169245 On This PageSUMMARY
Microsoft has made an update available for the "Untrusted Scripted Paste"
issue. This update addresses a problem regarding the way Internet Explorer
uses the Document.ExecCommand to read a file on a user's computer that is
in a known location.
NOTE: If you applied this patch prior to November 18, 1998, Microsoft recommends that you apply the most current version of this patch. For more information about the most current version of this patch, please see the following Microsoft Web site:
This vulnerability could also affect software that uses Hypertext Markup Language (HTML) functionality provided by Internet Explorer, even if Internet Explorer is not used as your default browser. MORE INFORMATION
Update Information By Product:
Internet Explorer 4.01 and Internet Explorer 4.01 SP1 for Windows 95 and Windows NT 4.0 on Intel x86 platforms: Update file name: Ie4usp.exe Available at: <WWLINK TYPE="GENERIC" VALUE="http://www.microsoft.com/windows/ie/security">http://www.microsoft.com/windows/ie/security</WWLINK> Updated file name Size (bytes) Date Version --------------------------------------------------------- Mshtml.dll 2,414,864 12/18/98 4.72.3612.1700 Update file name: Ie4usp.exe Available at: <WWLINK TYPE="GENERIC" VALUE="http://www.microsoft.com/windows/ie/security">http://www.microsoft.com/windows/ie/security</WWLINK> Updated file name Size (bytes) Date Version --------------------------------------------------------- Mshtml.dll 3,938,064 11-13-98 4.72.3511.1300 Update file name: Ie4usp.exe Available at: Microsoft Windows Update site http://windowsupdate.microsoft.com
(http://windowsupdate.microsoft.com)
Updated file name Size (bytes) Date Version --------------------------------------------------------- Mshtml.dll 2,414,864 11-13-98 4.72.3511.1300 Update file name: Ie416usp.exe Available at: <WWLINK TYPE="GENERIC" VALUE="http://www.microsoft.com/windows/ie/security">http://www.microsoft.com/windows/ie/security</WWLINK> Updated file name Size (bytes) Date Version --------------------------------------------------------- Mshtml16.dll 3,084,608 11-12-98 4.01.2510.1300 Reducing Your Risk If You Cannot Apply the PatchMicrosoft strongly encourages that you apply the patch. If you are unable to apply the patch, you can reduce your risk of being affected by this problem by temporarily disabling Active Scripting in Internet Explorer. To do so, follow these steps:
To enable this prompt, follow these steps:
ARTICLE-ID: How to Use Security Zones in Internet Explorer 4.0 TITLE : <WWLINK TYPE="ARTICLE" VALUE="Q174360">Q174360</WWLINK> APPLIES TO
| Article Translations
|

Back to the top
