Vulnerable Systems:
* Microsoft Internet Explorer 8
* Microsoft Windows XP Service Pack 3
* Microsoft Windows Server 2003 Service Pack 2
* Microsoft Windows Vista Service Pack 2
* Microsoft Windows Server 2008 Service Pack 2
* Microsoft Windows 7 Service Pack 1
* Microsoft Windows Server 2008 R2 Service Pack 1
The vulnerability is caused by a use-after-free error in the "CObjectElement::OnPropertyChange()" function within the MSHTML library when handling objects, which could be exploited by remote attackers to compromise a vulnerable system by tricking a user into visiting a specially crafted web page.