Internet Explorer allows secure content to be cached

Risk Level: Low risk vulnerability  Low

Check or Attack Name: IE cached pages

Platforms: Internet Explorer
Description:

Allows secure content to be cached on the local file system in non-encrypted or non-secure form.

Remedy:

Depending on your version, select one of the following choices in Internet Explorer:

  • In Internet Explorer 3.x, from the Options dialog box, go to Advanced/Cryptography Settings and enable Do Not Save Secure Pages To Disk.

    1. Open Internet Explorer 3.x.
    2. From the View menu, select Options.
    3. Click the Advanced tab.
    4. Locate the feature and set it to the recommended value.
    5. Click OK to apply the changes.

  • In Internet Explorer 4.x, from the Internet Options dialog box, go to Advanced, and in the Security section enable Do not save encrypted pages to disk.

    1. Open Internet Explorer 4.x.
    2. From the View menu, select Internet Options.
    3. Click the Advanced tab.
    4. Locate the advanced feature and set it to the recommended value.
    5. Click OK to apply the changes.

  • In Internet Explorer 5.x, from the Internet Options dialog box, enable the appropriate settings under the Advanced tab.

    1. Open Internet Explorer 5.x.
    2. From the Tools menu, select Internet Options.
    3. Click the Advanced tab.
    4. Enable Do not save encrypted pages to disk.
    5. Click OK to apply the changes.

References:

X-Force Logo
Know Your Risks