| Mar 02, 2010 |
Microsoft Releases Security Advisory to Address VBScript Vulnerability Microsoft has released a security advisory to address a vulnerability in VBScript. The advisory indicates that this vulnerability exists in the way that VBScript interacts with Windows Help files when using Internet Explorer. By convincing a user to view a specially crafted HTML document (web page, HTML email, or email attachment) with Internet Explorer and to press the F1 key, an attacker could run arbitrary code with the privileges of the user running the application. US-CERT encourages users and administrators to do the following to help mitigate the risks:
|