Security Advisory

CVE-2006-1476

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-03-29 01:00:00
Last updated 2024-08-07 17:12:22
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Windows Firewall in Microsoft Windows XP SP2 produces incorrect application block alerts when the application filename is ".exe" (with no characters before the "."), which might allow local user-assisted users to trick a user into unblocking a Trojan horse program, as demonstrated by a malicious ".exe" program in a folder named "Internet Explorer," which triggers a question about whether to unblock the "Internet Explorer" program.