Family: Windows : Microsoft Bulletins --> Category: infos
Vulnerability in Microsoft MFC Could Allow Remote Code Execution (924667) Vulnerability Scan
Vulnerability Scan Summary
Acertains the presence of update 924667
Detailed Explanation for this Vulnerability Test
Arbitrary code can be executed on the remote host through the MFC
component provided with Microsoft Windows.
The remote host contains a version of Microsoft Windows which has a vulnerability
in the the MFC component which could be abused by a possible hacker to execute arbitrary
code on the remote host.
To exploit this vulnerability, a possible hacker would need to spend a specially
crafted RTF file to a user on the remote host and lure him into opening it.
Microsoft has released a set of patches for Windows 2000, XP and 2003 :
High / CVSS Base Score : 8.0
Click HERE for more information and discussions on this network vulnerability scan.