A vulnerability in Windows that is known since September 7 is being taken advantage of by releasing the code in public. The code crashes a computer but Harmony Security Senior Researcher Stephen Fewer has developed a code that lets an attacker run a program on a user’s machine which is more dangerous than the other situation.
Windows Vista Service Pack 1 and 2 as well as Windows 2008 SP1 server are the operating systems that are vulnerable to the exploit according to Metasploit developer HD Moore.
An Immunity Senior Researcher said that the code only works on Vista.
Source: PC World
Source: PC World
This is why is so so important to be downloading and installing your windows updates.