Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Critical vulnerability found in IE 9 and 10, affects one third of Internet Explorer users

Critical vulnerability found in IE 9 and 10, affects one third of Internet Explorer users

Ron Ron
January 19, 2021
2 min read

Critical vulnerability found in IE 9 and 10 affects one third of Internet Explorer users

Microsoft has confirmed FireEye’s report that revealed an unpatched vulnerability in Internet Explorer 9 and 10. The combined user-share of IE 9 and IE 10 is about 32%, and while people using Windows 7 and higher can upgrade to IE 11, the latest version of IE, Windows Vista users can’t enjoy such luxuries.

FireEye, a global network security firm, reported the vulnerability just two days after Microsoft issued a patch for every version of IE which fixed around 2 dozen flaws. The attack code, was described as “classic drive-by download attack”, something which is categorized under the most dangerous browser-based attacks.

This exploit reportedly circumvents one of Windows’ most critical anti-exploitation technologies ASLR (address space layout randomization) using Flash ActionScript which is used by many websites that run content using Flash player.

Microsoft is aware of the issue but hasn’t announced if they have found a solution, and whether they will provide the update before the next Patch Tuesday, which is scheduled for March 11. “Microsoft is aware of limited, targeted attacks against Internet Explorer 10. Our initial investigation has revealed that Internet Explorer 9 and Internet Explorer 10 are affected,” a Microsoft spokesperson told ComputerWorld.

Security firm Websense said that it has evidence that this exploit attack has been going on for at least the last three weeks. It also believes that this attack was targeting visitors at the French Aerospace Association’s website.

It is alarming news for Windows Vista users, which according to the data from Net Applications, constitute about 3.6% of all desktop users, since now they can’t upgrade to IE 11, and are tied to IE 9 by default. 

Share This Post:

Tags: Internet Explorer | Vulnerability
Share this article:
Tags:
Internet Explorer Vulnerability
Previous Article Xbox Canada teases players with a one-of-a-kind denim Xbox controller Next Article Microsoft’s site promoting greater government transparency was hacked

Related Articles

OpenAI says ChatGPT ‘Adult Mode’ Needs More Time

March 9, 2026

Claude Opus 4.6 Discovers 22 Firefox Vulnerabilities in Just Two Weeks

March 9, 2026
OpenClaw can now connect with Gmail, Drive, and Docs using Google’s new CLI

OpenClaw can now connect with Gmail, Drive, and Docs using Google’s new CLI

March 9, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • OpenAI says ChatGPT ‘Adult Mode’ Needs More Time
  • Claude Opus 4.6 Discovers 22 Firefox Vulnerabilities in Just Two Weeks
  • OpenClaw can now connect with Gmail, Drive, and Docs using Google’s new CLI
  • Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
  • How Apple Made the $599 MacBook Neo Without Using Plastic

Recent Comments

No comments to show.
OnMSFT.com

OnMSFT.com covers Microsoft news, reviews, and how-to guides. Formerly known as WinBeta, we have been your source for Microsoft news since 1998.

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • OpenAI says ChatGPT 'Adult Mode' Needs More Time
  • Claude Opus 4.6 Discovers 22 Firefox Vulnerabilities in Just Two Weeks
  • OpenClaw can now connect with Gmail, Drive, and Docs using Google’s new CLI
  • Chrome Prepares Nudge to 'Move Tabs to the Side' as Vertical Tabs Near Release
  • How Apple Made the $599 MacBook Neo Without Using Plastic

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy