IE COM Flaw Exposed | Internet News

IE COM Flaw Exposed

Jul 1, 2005
1 minute read

Just in time for your holiday weekend browsing, a new Microsoft Internet
Explorer flaw has surfaced that could allow a hacker to take control of your
PC.

A Microsoft advisory acknowledging the existence of the flaw was issued
late yesterday after security firm SEC Consult published proof of
concept code online.

The vulnerability stems from a COMflaw
(javaprxy.dll) that, according to the Microsoft security advisory, “could
cause Internet Explorer to unexpectedly exit.”

According to the advisory, Microsoft is investigating an exploitable
condition of the vulnerability, which could potentially allow a hacker to run
arbitrary code and take control of the compromised system.

SEC Consult claims it reported the vulnerability to
Microsoft on June 17, which Microsoft responded to.

On June 29, Microsoft allegedly informed SEC Consult that the flaw was not
exploitable. At that point, the security firm publicly released its own
advisory, which includes a simple proof of concept code.

Microsoft’s advisory notes that, “while this issue was first reported to
Microsoft responsibly, details about the reported vulnerability have been
made public.”

A Microsoft spokesperson was not immediately available for comment.

There is currently no patch for the vulnerability, which could potentially
be executed from an attacker’s HTML page that is embedded with certain code
that could trigger the COM flaw.

Until a patch is made available, Microsoft is recommending that users set
their IE zone security settings for both Internet and intranets to
“High.”

Internet News Logo

InternetNews is a source of industry news and intelligence for IT professionals from all branches of the technology world. InternetNews focuses on helping professionals grow their knowledge base and authority in their field with the top news and trends in Software, IT Management, Networking & Communications, and Small Business.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.