Family: Windows : Microsoft Bulletins --> Category: infos
Vulnerability in Microsoft RichEdit Could Allow Remote Code Execution (918118) Vulnerability Scan
Vulnerability Scan Summary
Acertains the presence of update 918118
Detailed Explanation for this Vulnerability Test
Arbitrary code can be executed on the remote host through the RichEdit
component provided with Microsoft Windows and Microsoft Office
The remote host contains a version of Microsoft Windows and/or Microsoft
Office which has a vulnerability in the RichEdit component which could
be abused by a possible hacker to execute arbitrary code on the remote host.
To exploit this vulnerability, a possible hacker would need to spend a specially
crafted RTF file to a user on the remote host and lure him into opening it.
Microsoft has released a set of patches for Windows 2000, XP and 2003 :
High / CVSS Base Score : 8.0
Click HERE for more information and discussions on this network vulnerability scan.