All versions of Internet Explorer (IE) contain a critical vulnerability that can be exploited by attackers. The vulnerability in IE6, IE7 and IE8 surfaced several weeks ago when French security firm Vupen disclosed a flaw in IE’s HTML engine. Microsoft urged users to use the Enhanced Mitigation Experience Toolkit (EMET) utility to bolster IE’s defenses. The last time the company issued an out-of-band update was late September when it patched the ASP.Net Web application framework.”]
Source: https://www.csoonline.com/article/2126533/microsoft-confirms-critical-ie-bug–works-on-fix.html