http://www.networkworld.com/article/2973336/security/microsoft-issues-out-of-band-patch-for-critical-internet-explorer-flaw.html

By Tim Greene
Network World
Aug 19, 2015

A dangerous flaw in Internet Explorer has prompted Microsoft to issue a patch outside its regularly scheduled monthly security updates in order to head off a known exploit of the vulnerability.

The company has issued a security bulletin that describes how users who are lured to specially crafted webpages could have attackers take over control of their computers with the same rights as the user who logged into the machine.

“If the current user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system,” the bulletin says. “An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.”

The exploit could result in attackers executing code on the machines, elevation of privileges, information disclosure and security bypass.

[...]

--
Evident.io - Continuous Cloud Security for AWS.
Identify and mitigate risks in 5 minutes or less.
Sign up for a free trial @ https://evident.io/

Reply via email to