Security Update, October 10, 2000

Published: December 11, 2000
**
Download

English

DownloadSecurity Update
346 KB file

Arabic

DownloadSecurity Update
346 KB file

Chinese (Simplified)

DownloadSecurity Update
346 KB file

Chinese (Traditional)

DownloadSecurity Update
346 KB file

Czech

DownloadSecurity Update
346 KB file

Danish

DownloadSecurity Update
346 KB file

Dutch

DownloadSecurity Update
346 KB file

Finnish

DownloadSecurity Update
346 KB file

French

DownloadSecurity Update
346 KB file

German

DownloadSecurity Update
346 KB file

Greek

DownloadSecurity Update
346 KB file

Hungarian

DownloadSecurity Update
346 KB file

Italian

DownloadSecurity Update
346 KB file

Japanese

DownloadSecurity Update
346 KB file

Korean

DownloadSecurity Update
346 KB file

Norwegian

DownloadSecurity Update
346 KB file

Polish

DownloadSecurity Update
346 KB file

Portugese (Brazilian)

DownloadSecurity Update
346 KB file

Russian

DownloadSecurity Update
346 KB file

Spanish

DownloadSecurity Update
346 KB file

Swedish

DownloadSecurity Update
346 KB file

Turkish

DownloadSecurity Update
346 KB file
**

Read This First

This update resolves the "Cached Web Credentials" security vulnerability in Internet Explorer. Download now to help prevent a malicious user from learning the credentials of another user and then using them to log onto a Web site as the other user. This vulnerability does not give a malicious user the ability to add, change, or delete files on your computer.

Under the "Cached Web Credentials" vulnerability, if a user logs onto a secured Web page using Basic Authentication, and subsequently visits a non-secure page on the same site, Internet Explorer automatically sends the cached credentials, normally a user ID and password, to the non-secure page. If a malicious user gains control over the other user's network communications, it is possible for the malicious user to read the credentials and use them. This vulnerability does not provide a means by which the malicious user can force another user to log onto a secure page, and can only be used to reveal credentials that had been cached during the current Internet Explorer session.

For more information on these vulnerabilities, please read Microsoft Security Bulletin MS00-076.

Top of pageTop of page

How to download and install

Select your language from the download box on the right.

Top of pageTop of page

System Requirements

This update applies to computers that are running Internet Explorer 5.01 SP1.

Top of pageTop of page

How to uninstall

Uninstall is not available.


For More Information

Top of pageTop of page