Family: Windows : Microsoft Bulletins --> Category: infos
Vulnerability in Microsoft OLE Dialog Could Allow Remote Code Execution (926436) Vulnerability Scan
Vulnerability Scan Summary
Acertains the presence of update 926436
Detailed Explanation for this Vulnerability Test
Arbitrary code can be executed on the remote host through the OLE Dialog
component provided with Microsoft Windows.
The remote host contains a version of Microsoft Windows which has a
vulnerability in the OLE Dialog component which could be abused by an
attacker to execute arbitrary code on the remote host.
To exploit this vulnerability, a possible hacker would need to spend a specially
crafted RTF file to a user on the remote host and lure him into opening it.
Microsoft has released a set of patches for Windows 2000, XP and 2003 :
High / CVSS Base Score : 8.0
Click HERE for more information and discussions on this network vulnerability scan.