Just wondering about IIS, IE, MS SQL Server, MS Exchange, NtOsKernel.dll, OutlookExpress, MS Outlook, MS Office VBA macros, WSH (vbs/js), COM/OLE, ActiveX, and the list goes on...
All major security holes and vulnerabilities founded so far in these products are 3rd party?