Zone scripting of unsafe ActiveX controls |
---|
Risk Level: | Medium | Check or Attack Name: Zone unsafe scripting enabled |
---|---|---|
Platforms: | Windows NT, Internet Explorer | |
Description: | The security zone settings allow ActiveX controls not marked as safe to be automatically initialized and executed from the URL security zone of the HTML page that contains the script. Potentially malicious scripts containing ActiveX controls may be automatically executed by the web browser. |
|
Remedy: | Depending on your version, select one of the following choices in Internet Explorer:
|
|
References: |
Know Your Risks |