<< Back
CVE Number Vulnerability Product Severity Date
MS13-074 Vulnerabilities in Microsoft Access Could Allow Remote Code Execution (2848637) Microsoft Office Important 11-09-2013

Technical Information

Brief overview of the risk:
This security update resolves three privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially crafted Access file with an affected version of Microsoft Access.
Detailed Information on the risk:

Remote code execution vulnerabilities exist in the way that Microsoft Access parses content in Access files. An attacker who successfully exploited these vulnerabilities could take complete control of an affected system.


Further information on this exploit is available at : MS13-074

Affected Software

Microsoft Office 2007 Service Pack 3
Microsoft Office 2010 Service Pack 1 (32-bit editions)
Microsoft Office 2010 Service Pack 2 (32-bit editions)
Microsoft Office 2010 Service Pack 1 (64-bit editions)
Microsoft Office 2010 Service Pack 2 (64-bit editions)
Microsoft Office 2013 (32-bit editions)
Microsoft Office 2013 (64-bit editions)