CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
MS10-044 | Vulnerabilities in Microsoft Office Access ActiveX Controls Could Allow Remote Code Execution (982335) | Microsoft Office | Critical | 14-07-2010 |
Technical Information
Brief overview of the risk:
The vulnerability could allow remote code execution if a user opened an attachment in a specially crafted e-mail message using an affected version of Microsoft Office Outlook.
Detailed Information on the risk:
A remote code execution vulnerability exists in the way that Microsoft Office Outlook verifies attachments in a specially crafted e-mail message. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Further information on this exploit is available at : MS10-045
Affected Software
Microsoft Office XP Service Pack 3Microsoft Office 2003 Service Pack 3
2007 Microsoft Office System Service Pack 1 and 2007 Microsoft Office System Service Pack 2