Java zero-day leads to Internet Explorer zero-day
While looking around a compromised server that was being used to exploit Java vulnerabilities, a security researcher stumbled upon another exploit that he claims affects fully patched versions of Microsoft Internet Explorer 7 and 8.
Eric Romang found four files on the server: an executable, a Flash Player movie and two HTML files called exploit.html and protect.html
Read more: Java zero-day leads to Internet Explorer zero-day
Story added 17. September 2012, content source with full text you can find at link above.