We use cookies to provide you with a better experience. If you continue to use this site, we'll assume you're happy with this. Alternatively, click here to find out how to manage these cookies

hide cookie message
80,259 News Articles

One more for luck – another IE flaw found

Bad week for Microsoft

The US government and several security vendors warned this week of newly published proof-of-concept code that exploits a serious, unpatched security flaw in Microsoft Internet Explorer.

The warnings come on the heels of a week of security traumas for Microsoft, which on Tuesday issued an emergency patch for an IE (Internet Explorer) bug that was being exploited by thousands of websites. Microsoft then acknowledged that an unpatched bug in PowerPoint was being exploited by internet scammers.

Also this week, the company reissued a third of the patches it originally published in August.

The proof-of-concept code was published by HD Moore, a well-known researcher who co-founded the Metasploit Project. Moore originally publicised the bug involved in July as part of his 'Month of Browser Bugs' project, which detailed flaws in IE and other browsers. The bug remains unpatched, according to security companies.

The code targets a flaw in the WebViewFolderIcon ActiveX control, Moore said. The bug works on a fully patched Windows XP SP2 system, and allows attackers to execute malicious code, according to security firm Secunia.

US-CERT, a US government body that monitors IT security issues, issued an alert and recommended disabling ActiveX. Secunia yesterday gave the flaw its most serious rating, 'extremely critical', and recommended allowing only trusted sites to run ActiveX controls.


IDG UK Sites

LG G4 Note UK release date and specification rumours: Samsung Galaxy Note 5 killer could be the LG 3......

IDG UK Sites

In defence of BlackBerrys

IDG UK Sites

Why we should reserve judgement on Apple ditching Helvetica in OS X/iOS for the Apple Watch's San...

IDG UK Sites

Retina 3.3GHz iMac 27in preview: Apple cuts £400 of price of Retina iMac with new model