A new IE flaw (which many have noted) has been created into a proof of concept with code provided.

Here is the link to it: http://www.k-otik.com/exploits/07072004.IEApplicationShell.php

Users...