Notices
Computer & Technology Related Post here for help and discussion of computing and related technology. Internet, TVs, phones, consoles, computers, tablets and any other gadgets.

IEeeek!

Thread Tools
 
Search this Thread
 
Old 22 November 2005, 01:32 PM
  #1  
BlkKnight
Scooby Regular
Thread Starter
 
BlkKnight's Avatar
 
Join Date: Feb 2004
Location: High Wycombe
Posts: 3,763
Likes: 0
Received 0 Likes on 0 Posts
Default IEeeek!

Hackers have created a potent exploit for a six-month old vulnerability in Internet Explorer which was previously believed to be only a Denial of Service risk. A fresh exploit posted on computerterrorism.com proves that the security bug can be exploited to gain system access, even on systems running Windows XP with Service Pack 2. The flaw stems from a failure by IE to properly handle requests to the window() object.

Successful exploitation involves tricking a Windows user running IE into visiting a maliciously constructed website contain hostile JavaScript code. Users of both IE 5.5 and 6.x are potentially at risk. "Currently, the only way to protect against exploitation of this vulnerability is by disabling active scripting or by using another browser," said Thomas Kristensen, CTO of security notification firm Secunia.

http://www.theregister.co.uk/2005/11/22/ie_exploit/

http://secunia.com/advisories/15546

http://www.microsoft.com/technet/sec...ry/911302.mspx
Old 22 November 2005, 01:55 PM
  #2  
JackClark
Scooby Senior
 
JackClark's Avatar
 
Join Date: Dec 2000
Location: Overdosed on LCD
Posts: 20,852
Received 51 Likes on 34 Posts
Default

"Currently, the only way to protect against exploitation of this vulnerability is by disabling active scripting or by using another browser,"

Or you could run Antivirus Software that blocks this type of attack.




All times are GMT +1. The time now is 02:24 PM.