iEntry 10th Anniversary RSS Archive

IT Management Begins With Security
SecurityProNews > Insider Reports > Insider > Microsoft Warns Of IE Vulnerability
Search:
[ insider_reports_insider ]

Microsoft Warns Of IE Vulnerability



Mike Sachoff
Staff Writer
2009-07-07

SecurityProNews: Insider Reports Insider Reports RSS Feed


Microsoft has issued a security advisory about a privately reported vulnerability in its Video ActiveX Control.

Microsoft Warns Of IE Vulnerability
Microsoft Warns Of IE Vulnerability

The company says that users running IE6 or IE7 on Windows XP and Windows Server 2003 are at risk for attacks, but Windows Vista and Server 2008 and those running IE8 are not at risk.

"An attacker who successfully exploited this vulnerability could gain the same user rights as the local user," Microsoft said in its advisory. "We are aware of attacks attempting to exploit the vulnerability."

Microsoft said it is working with its partners to provide information they can use to provide broader protections to customers. "Microsoft is currently working to develop a security update for Windows to address this vulnerability," the company said.

Microsoft is recommending users remove support for ActiveX Video Control until a fix is in place.

"When the ActiveX control is used in Internet Explorer, the control may corrupt the system state in such a way that an attacker could run arbitrary code," the Redmond, Washington-based company said.

Attackers can exploit the vulnerability when Internet users visit websites with malicious code. Unsuspecting users may receive emails requesting they visit malicious websites.

"Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights," Microsoft said.



About the Author:
Mike is a staff writer for WebProNews. Visit WebProNews for the latest ebusiness news.

More insider_reports_insider Articles

SecurityProNews: Insider Reports Insider Reports RSS Feed


Get Your Site Submitted for Free in the World's Largest B2B Directory!

Email Address:
* URL:
*
*Indicates Mandatory Field

Terms & Conditions

iEntry Featured Services: Jayde Member Services | Forums | Freeware | Advertise with Us

Virus Warnings

Subscribe to
SecurityProNews FREE!



[ more newsletters ]

article resources
Search Articles:
[advanced search]

WebProWorld.com
Get in-touch with industry experts and leaders
Post your site for review by expert and peers
Ask Security, IT, Development and Design questions

Free Membership: Join Now!

Visit WebProWorld.com

Titan Quest Forum
The #1 Titan Quest forum
Halo 3 Forum
The best Halo, Halo 2, Halo 3 forum
Nintendo Wii
Nintendo Wii news and views
Mac Software
The best in OS X freeware
Graphics Forum
Your source for graphic tutorials
SecurityProNews.com | Breaking eBusiness News Get Your IT Questions Answered - Click Here SecurityProNews News Feeds