Internet Explorer 0-Day Exploit

The Microsoft Security Response Center (MSRC) confirmed a new 0-day exploit for Internet Explorer. According to H-Online the hole is caused by the ability of VBScript’s MsgBox function to retrieve arbitrary online help files (.hlp) and execute arbitrary commands via macros these files may contain.

“However, this requires some user interaction: The user has to confirm by pressing F1,” says the article.

Leave a comment

By posting this comment you agree, that your name, Email address and your IP address is stored with your comment. View details in the pricacy statement.