US-CERT Alert: Exploit for Vulnerability in Microsoft Internet Explorer window() objectUS-CERT Alert: Exploit for Vulnerability in Microsoft Internet Explorer window() objectNovember 21, 2005 -- US-CERT is aware of a vulnerability in the way Microsoft Internet Explorer handles requests to the window() object. If exploited, the vulnerability could allow a remote attacker to execute arbitrary code with the privileges of the user. Additionally, the attacker could also cause IE (or the program using the WebBrowser control) to crash. Source: Wired News |