Two new vulnerabilities in Internet Explorer have been identified which will provide a malicious script complete access to a Windows PC.
In simple terms, the link uses an unknown vulnerability to open up a local Explorer help file -- ms-its:C:WINDOWSHelpiexplore.chm::/iegetsrt.htm. It delays executing anything immediately but instead uses another unknown vulnerability to run another file which in turn runs some script. This script is then used to run more script. And finally that script is used to run an exploit that Microsoft Corp. has been aware of since August 2003 but hasn't patched.
That exploit -- Adodb.stream -- has not been viewed as particularly dangerous, since it only works when the file containing the code is present on the user's hard disk. The problem comes in the fact that the Help file initially opened is assumed to be safe since it is a local file and so has minimal security restrictions.
Computerworld Australia is carrying this report.