internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet |Refer-It

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Internet Explorer 8

Most Popular Software Downloads
Mozilla Firefox 3.0
Adobe Reader
Ad-Aware 2008 Free
QuickTime for Windows
Internet Explorer 7
Paint Shop Pro
Windows Live Suite
AVG Anti-Virus Free
Opera
CCleaner (Crap Cleaner)

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Windows Vista: Worthy of the Hype?
Windows Wireless Zero Configuration: Five Steps to Sanity


Software Reviews

'Critical' Flaw in Visual Studio 2005
One Security Firm Deems It an Extremely Critical Flaw
Ed Sutherland

Software giant Microsoft (Quote) says it is investigating and may issue an out-of-cycle patch to resolve a bug in an ActiveX control used by Visual Studio 2005.

The flaw, known as a zero-day vulnerability, is viewed as "extremely critical" by one security research firm.

Microsoft said while it knows of proof of concept code published publicly, it said any exploit would cause only "limited attacks." The software maker also released a security advisory suggesting ways users could avoid the flaw.

The vulnerability, part of the WMI Object Broker ActiveX found in the WmiScriptUtils.dll file, could allow attackers to gain administrator access. Users would need to visit Web sites that include the exploit, according to Microsoft.

Additionally, users of Visual Studio 2005 running on Windows Server 2003 or Windows systems with IE7's default configuration are not vulnerable to the exploit.

Microsoft said it would wait until its investigation ends before deciding whether to issue a fix before its regular patch session.

Danish security firm Secunia rated the flaw "critical" and said on its Web site that it is already being actively exploited.

Not everything is critical for Secunia, as it is downplaying reports of a newly discovered Windows XP flaw. The vulnerability is within the Windows Internet Connection Service, part of the operating system enabling users to share Internet connections on a local area network.

While the flaw could cause Windows Firewall to be disabled and open users to some risk, an attacker would need to be a part of the local area network to access the system. The firm issued a rather simple solution to use a router instead of ICS to share your Internet connection.

News courtesy of internetnews.com

November 1, 2006

Download Internet Explorer Security Patches Now!Download

View All Microsoft Service & Security Releases

Contents:
1. One Security Firm Deems It an Extremely Critical Flaw






JupiterOnlineMedia

internet.comearthweb.comDevx.commediabistro.comGraphics.com

Search:

Jupitermedia Corporation has two divisions: Jupiterimages and JupiterOnlineMedia

Jupitermedia Corporate Info


Legal Notices, Licensing, Reprints, & Permissions, Privacy Policy.

Advertise | Newsletters | Tech Jobs | Shopping | E-mail Offers

Solutions
Whitepapers and eBooks
IBM eBook: Planning a Service Oriented Architecture
IBM eBook: Choosing the Right Architecture--What It Means for You and Your Business
Microsoft Article: Will Hyper-V Make VMware This Decade's Netscape?
Avaya Article: Using Intelligent Presence to Create Smarter Business Applications
Intel Go Parallel Article: Getting Started with TBB on Windows
Microsoft Article: 7.0, Microsoft's Lucky Version?
Avaya Article: How to Feed Data into the Avaya Event Processor
IBM Article: Developing a Software Policy for Your Organization
Microsoft Article: Managing Virtual Machines with Microsoft System Center
Intel Go Parallel Article: Intel Threading Tools and OpenMP
HP eBook: Storage Networking , Part 1
Microsoft Article: Solving Data Center Complexity with Microsoft System Center Configuration Manager 2007
MORE WHITEPAPERS, EBOOKS, AND ARTICLES
Webcasts
HP Video: StorageWorks EVA4400 and Oracle
HP Webcast: Storage Is Changing Fast - Be Ready or Be Left Behind
Microsoft Silverlight Video: Creating Fading Controls with Expression Design and Expression Blend 2
MORE WEBCASTS, PODCASTS, AND VIDEOS
Downloads and eKits
Red Gate Download: SQL Toolbelt and free High-Performance SQL Code eBook
Iron Speed Designer Application Generator
MORE DOWNLOADS, EKITS, AND FREE TRIALS
Tutorials and Demos
Silverlight 2 App and Walkthrough: Leverage Silverlight 2 with SQL Server and XML
IBM Article: Enterprise Search--Do You Know What's Out There?
HP Demo: StorageWorks EVA4400
Microsoft Article: The Progress and Promise of Deep Zoom
Microsoft How-to Article: Get Going with Silverlight and Windows Live
MORE TUTORIALS, DEMOS AND STEP-BY-STEP GUIDES