Microsoft released three critical vulnerability bulletins last week. The problems are in Commerce Server, Microsoft XML Core Services and Internet Explorer.
Commerce Server – Unchecked buffer in ISAPI filter could allow commerce server compromise. Click here to view bulletin.
Microsoft XML Core Services – XMLHTTP control can allow access to local files. Click here to view bulletin.
Internet Explorer – Incorrect VBScript handling in IE can allow web pages to read local files
Click here to view bulletin.