1 min read

A vulnerability in Microsoft’s Internet Explorer web browser can allow a “remote, unauthorized attack” on users’ computers, the company announced via a service advisory over the weekend. Although it is working to fix the problem, the company suggests “workarounds,” according to Paula Fleming of the Better Business Bureau.

Meanwhile, the U.S. Computer Emergency Readiness Team, a division of the Department of Homeland Security, is urging computer users to employ Microsoft’s Enhanced Mitigation Experience Toolkit if possible, or temporarily switch to a different browser until an official update is made available.

The “use-after-free” vulnerability can allow remote attackers to install code on a user’s computer without authorization, Fleming wrote in the advisory. Versions 6 through 11 of Internet Explorer are vulnerable, and users who still have the Windows XP operating system are at greater risk because the company is no longer supporting the product, she said.

Better Business Bureau is joining with security experts in recommending that IE users:

Ӣ Download the EMET for additional protection (although it may not mitigate this particular vulnerability)

Advertisement

Ӣ Temporarily switch to a different web browser, such as Goggle Chrome or Mozilla Firefox

Ӣ Disable Adobe Flash, as the attack may not work without it

Ӣ Windows XP users should upgrade their operating system or disconnect their computer from the Internet, as the company no longer supports this version of Windows

For more tips, visit bbb.org.



        Comments are not available on this story. Read more about why we allow commenting on some stories and not on others.