main
Report a problem

Microsoft Patch for Internet Explorer doesn't fix problem

ph0enix   on 08 September 2003 - 11:19 · 65 comments & 6575 views

Advertisement (Why?)
Security expert http-equiv on Full-Disclosure has reported that the patch for the latest security vulnerability in Microsoft Internet Explorer (MS02-032) doesn't fix the problem. A link to a proof of concept exploit is included in his advisory.
    Affected Systems:
  • Microsoft Internet Explorer 5.01
  • Microsoft Internet Explorer 5.5
  • Microsoft Internet Explorer 6.0
  • Microsoft Internet Explorer 6.0 for Windows Server 2003
Microsoft is already informed, a updated patch may coming soon. In the meantime you should:
  • Disable Active Scripting or (if possible)
  • Un-install Microsoft Internet Explorer

View: IE Exploit creating new pop up page
View: Internet Explorer Object Data Remote Execution Vulnerability Advisory
News source: Full-Disclosure

Post a comment · Send to friend Comments · There are 65 additional comments

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)