FYI…

- http://isc.sans.org/diary.php?storyid=1119
Last Updated: 2006-02-13 21:58:52 UTC
"Info on a new "0-day" IE Drag-n-Drop vulnerability can be found here*. All things considered, it looks to be a might bit "complex" to come off well, but it may very well be usable. However, I would say that it'll probably be sitting near the bottom of the list of most popular attacks as long as we still have machines out there vulnerable to WMF and other, easier to do, nasties."
* http://www.securiteam.com/windowsntfocus/5MP0B0UHPA.html
13 Feb. 2006
"Affected Systems:
* Microsoft Internet Explorer 5.01
* Microsoft Internet Explorer 5.5
* Microsoft Internet Explorer 6.0
- Windows 98
- Windows 98 Second Edition
- Windows Millennium Edition
- Windows 2000
- Windows XP
- Windows Server 2003 …"

:ph34r: