Microsoft released four security bulletins this month addressing a total of 42 vulnerabilities in Internet Explorer,NET and Windows task scheduler. XMLDOM vulnerability (cve-2013-7331), a vulnerability that has been publicly discussed since at least April 25, 2013, was re-purposed and abused in the VFW watering hole attack by APT otherwise known as Aurora Panda or the DeputyDog actor The other 36 Internet Explorer memory corruption vulnerabilities are all over the board as far as exploitability per platform, but all enable remote code execution.”]

