Microsoft’s new monthly patching policy is getting put to the test as several vulnerabilities, such as another Internet Explorer hole disclosed this week, present attackers with opportunity. The latest IE hole — announced by Secunia, the same Danish security company that disclosed a separate, critical hole in Explorer late last month — could be exploited and used to spoof a Web site by displaying a fake URL in the address bar, according to Secunia.
IE Hole Exposed, MS Not Patching
Posted by: Jay Lyman December 11, 2003 09:45 AMMicrosoft’s new monthly patching policy is getting put to the test as several vulnerabilities, such as another Internet Explorer hole disclosed this week, present attackers with opportunity. The latest IE hole — announced by Secunia, the same Danish security company that disclosed a separate, critical hole in Explorer late last month — could be exploited and used to spoof a Web site by displaying a fake URL in the address bar, according to Secunia.