Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Critical vulnerability found in IE 9 and 10, affects one third of Internet Explorer users

Critical vulnerability found in IE 9 and 10, affects one third of Internet Explorer users

Ron Ron
January 19, 2021
2 min read

Critical vulnerability found in IE 9 and 10 affects one third of Internet Explorer users

Microsoft has confirmed FireEye’s report that revealed an unpatched vulnerability in Internet Explorer 9 and 10. The combined user-share of IE 9 and IE 10 is about 32%, and while people using Windows 7 and higher can upgrade to IE 11, the latest version of IE, Windows Vista users can’t enjoy such luxuries.

FireEye, a global network security firm, reported the vulnerability just two days after Microsoft issued a patch for every version of IE which fixed around 2 dozen flaws. The attack code, was described as “classic drive-by download attack”, something which is categorized under the most dangerous browser-based attacks.

This exploit reportedly circumvents one of Windows’ most critical anti-exploitation technologies ASLR (address space layout randomization) using Flash ActionScript which is used by many websites that run content using Flash player.

Microsoft is aware of the issue but hasn’t announced if they have found a solution, and whether they will provide the update before the next Patch Tuesday, which is scheduled for March 11. “Microsoft is aware of limited, targeted attacks against Internet Explorer 10. Our initial investigation has revealed that Internet Explorer 9 and Internet Explorer 10 are affected,” a Microsoft spokesperson told ComputerWorld.

Security firm Websense said that it has evidence that this exploit attack has been going on for at least the last three weeks. It also believes that this attack was targeting visitors at the French Aerospace Association’s website.

It is alarming news for Windows Vista users, which according to the data from Net Applications, constitute about 3.6% of all desktop users, since now they can’t upgrade to IE 11, and are tied to IE 9 by default. 

Share This Post:

Tags: Internet Explorer | Vulnerability
Share this article:
Tags:
Internet Explorer Vulnerability
Previous Article Xbox Canada teases players with a one-of-a-kind denim Xbox controller Next Article Microsoft’s site promoting greater government transparency was hacked

Related Articles

China Looks to Replace CUDA Dependence With Software-Defined Chip Strategy

April 7, 2026
Intel launches Core Ultra X7 378H with identical specs to 368H, but limits support to consumer platforms without embedded use availability.

Intel Core Ultra X7 378H launches with same specs as 368H but no embedded support

April 7, 2026

Intel Nova Lake CPUs Drop Xe4 Plans, Shift to Xe3 and Xe3P Graphics Setup

April 7, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • China Looks to Replace CUDA Dependence With Software-Defined Chip Strategy
  • Intel Core Ultra X7 378H launches with same specs as 368H but no embedded support
  • Intel Nova Lake CPUs Drop Xe4 Plans, Shift to Xe3 and Xe3P Graphics Setup
  • Analyst Says Fortnite’s “Forever Game” Era Is Ending After Epic Games Layoffs
  • Intel’s Advanced Packaging Business Grows Fast as AI Companies Look Beyond TSMC

Recent Comments

  1. XxRIVTYxX on Intel Says It Tried to Help Before Crimson Desert Dropped Arc Support
  2. Gaurav Kumar on Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • China Looks to Replace CUDA Dependence With Software-Defined Chip Strategy
  • Intel Core Ultra X7 378H launches with same specs as 368H but no embedded support
  • Intel Nova Lake CPUs Drop Xe4 Plans, Shift to Xe3 and Xe3P Graphics Setup
  • Analyst Says Fortnite’s “Forever Game” Era Is Ending After Epic Games Layoffs
  • Intel’s Advanced Packaging Business Grows Fast as AI Companies Look Beyond TSMC

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy