Vulnerability in Internet Explorer Could Allow Remote Code Execution - 913333 - 2/7/06 IE +WMF

Source: Microsoft

Microsoft Security Advisory (913333)

Vulnerability in Internet Explorer Could Allow Remote Code Execution

Published: February 7, 2006

Microsoft is investigating new public reports of a vulnerability in older versions of Microsoft Internet Explorer. Based on our investigation, this vulnerability could allow an attacker to execute arbitrary code on the user's system in the security context of the logged-on user. The attacker could do this by one or more of the following actions:

By hosting a specially crafted Windows Metafile (WMF) image on a malicious Web site;

By convincing a user to open a specially crafted e-mail attachment;

By convincing a user to click on a link in an e-mail message that takes the user to a malicious Web site; or

By sending a specially crafted e-mail message to Outlook Express users, which they view in the preview pane.

Note This is not the same issue as the one addressed by Microsoft Security Bulletin MS06-001 (912919).

Read More Here.

Protect your assets with an Internet Security Suite to prevent current and zero day exploits

Submitted by cybernoggin on Tue, 02/07/2006 - 11:19pm. categories [ | ] cybernoggin's blog | login or register to post comments