A vulnerability is reported in Internet Explorer 'DHTML Edit ActiveX' control resulting in possible cross site scripting attack.
The vulnerability in Microsoft Internet Explorer causes due to error in the DHTML Edit ActiveX control "execScript " function. To exploit this vulnerability a remote attacker creates html webpage having an ActiveX control to execute the arbitrary code on the users browser, which could be used to conduct a cross site scripting attack. This vulnerability may also be exploited for phishing attacks.
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available