word-access.txt...

- AV AC AU C I A
发布: 2000-08-09
修订: 2025-04-13

Georgi Guninski security advisory #17 - MS Word and MS Access 2000 (with or without Service Release 1a) allow executing arbitrary programs if a Word document is opened. This may be exploited also by visiting a web page with IE or opening/previewing HTML email message with Outlook. In order this to work, the user must be able to access a mdb file, which resides either on an UNC share or a local drive. This allows taking full control over user's computer. Demonstration exploit available here.

0%
当前有1条漏洞利用/PoC
当前有0条受影响产品信息