{"vuid":"VU#242891","idnumber":"242891","name":"Microsoft Internet Explorer may handle certain web pages in an incorrect, less restrictive security zone (MS02-023)","keywords":["Microsoft Internet Explorer","intranet zone","trusted sites","fewer restrictions","zone spoofing","MS02-023","Q321232"],"overview":"Microsoft Internet Explorer (IE) may handle malformed Internet pages accessed through the NetBIOS protocol as if they belong to the IE's Intranet or Trusted Sites security zones, instead of the more restrictive Internet security zone.","clean_desc":"If a user views a page on the Internet that has been malformed in a certain way to exploit the client's particular configuration, then IE may render the page using the less restrictive security settings of the Intranet zone or the Trusted Sites zone. This vulnerability cannot be exploited unless the user views the page using the NetBIOS protocol instead of HTTP.","impact":"A malicious web page may be rendered on the client host using less restrictive security settings than are appropriate for Internet pages. The specific impacts depend on the privileges specified in the client's settings for the Intranet and Trusted Sites zones.","resolution":"Apply a patch from your vendor See Microsoft Security Bulletin MS02-023 for more information: http://www.microsoft.com/technet/security/bulletin/MS02-023.asp","workarounds":"Disable NetBIOS access to external networks.","sysaffected":"","thanks":"Thanks to Microsoft for reporting this vulnerability.","author":"This document was written by Shawn Van Ittersum.","public":["http://www.microsoft.com/technet/security/bulletin/MS02-023.asp","http://www.securityfocus.com/bid/4753"],"cveids":["CVE-2002-0190"],"certadvisory":"","uscerttechnicalalert":null,"datecreated":"2002-05-16T13:52:05Z","publicdate":"2002-05-15T00:00:00Z","datefirstpublished":"2002-05-30T23:11:20Z","dateupdated":"2002-08-26T18:03:06Z","revision":17,"vrda_d1_directreport":"","vrda_d1_population":"","vrda_d1_impact":"","cam_widelyknown":"15","cam_exploitation":"0","cam_internetinfrastructure":"4","cam_population":"10","cam_impact":"6","cam_easeofexploitation":"7","cam_attackeraccessrequired":"20","cam_scorecurrent":"2.9925","cam_scorecurrentwidelyknown":"3.78","cam_scorecurrentwidelyknownexploited":"6.93","ipprotocol":"","cvss_accessvector":"","cvss_accesscomplexity":"","cvss_authentication":null,"cvss_confidentialityimpact":"","cvss_integrityimpact":"","cvss_availabilityimpact":"","cvss_exploitablity":null,"cvss_remediationlevel":"","cvss_reportconfidence":"","cvss_collateraldamagepotential":"","cvss_targetdistribution":"","cvss_securityrequirementscr":"","cvss_securityrequirementsir":"","cvss_securityrequirementsar":"","cvss_basescore":"","cvss_basevector":"","cvss_temporalscore":"","cvss_environmentalscore":"","cvss_environmentalvector":"","metric":2.9925,"vulnote":null}