A specifically crafted web page, could result in code execution on your client. Metasploit has already released something.
This affects all versions of IE, including 6, 7, 8. Use Firefox as a short-term workaround.
http://www.microsoft.com/technet/security/advisory/2488013.mspx
Advertisement