Internet Explorer HTML Help Control Local Zone bypass exploit that can be used against Microsoft Windows XP versions SP2 and below.
f0270bd2a77960daa6990750e5a46b0c50df9742d4ff6f78a288c4f82917ef38
Technical exercise demonstrating the enormously elaborate methods required to defeat the current security mechanisms in place in both Microsoft Windows XP SP2 and Internet Explorer 6.00 SP2 fully patched.
6fb0a58cc4a94db5f5ff84d35499da125dd5fa0ff5907d7c79123a8216912a11
eEye Security Advisory - eEye Digital Security has discovered a security vulnerability in IBM's signed eGatherer activex. Because this application is signed, it might be presented to users on the web for execution in the name of IBM. If users trust IBM, they will run this, and their systems will be compromised. This activex was designed by IBM to be used for an automated support solution for their PC's. This is installed by default on many popular IBM PC models.
6599862e14320181a6e068e3cea972c1e37c7c9c9660660f00865030c0c1566a
eEye Security Advisory - eEye Digital Security has discovered a security vulnerability in IBM's signed acpRunner activex. Because this application is signed, it might be presented to users on the web for execution in the name of IBM. If users trust IBM, they will run this, and their systems will be compromised. This activex was designed by IBM to be used for an automated support solution for their PC's. An unknown number of systems already have this activex on their systems. Version affected is 1.2.5.0.
2b6bac2ea94d90530ba2aaba9296ae3ea83b7a8958d58406bb05f94b3b8ed1b6
Registry updates for Microsoft Windows that help to prevent priorly unknown IE flaws from compromising a machine due to cross zone access flaws.
2f293c62bd440abbe96a5f65a8445da6596e29c7816ed0aeae41bf382143ae6d
Microsoft Outlook 2003 allows for a security zone bypass when an embedded OLE object with a reference to a Windows media file in a Rich Text Format (RTF) message is received.
5bf5bc65e12021c3781270decf58bd776d636f05498f59327d50d8ef47731e58
Outlook 2003 has a flaw that will allow malicious spammers to verify whether or not a recipient has read an email.
11ecdcb13367d2e1ae1f3074de7d169c041339a8b606c74b1a864149a8cffaa3
Some amusing flaws in Hotmail.com allows for credential theft.
36c149ffb66c8fd45646c4c58eb4976dbea678cc3ed3634af594e00d8731dca8
Trivial way to do file spoofing in Internet Explorer versions 6.0.2800.1106 and below.
77b83565d337b035d648444f5bce0a768b8022a42f296c2f964bd12f78475766