![]() |
Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | ||
ID de Prueba: | 1.3.6.1.4.1.25623.1.0.900004 |
Categoría: | Windows |
Título: | Microsoft Access Snapshot Viewer ActiveX Control Vulnerability |
Resumen: | Microsoft Access Snapshot in Microsoft Office Access is prone; to ActiveX control vulnerabilities. |
Descripción: | Summary: Microsoft Access Snapshot in Microsoft Office Access is prone to ActiveX control vulnerabilities. Vulnerability Insight: Overview: Microsoft Access Snapshot in Microsoft Office Access is prone to ActiveX control vulnerabilities. The ActiveX control for viewing a snapshot of Microsoft Access report. A specially crafted Web site, when visited can inject arbitrary code because of a vulnerability in the ActiveX control. Vulnerability Impact: Exploitation involves convincing the victim to view an HTML document (eg., web page, HTML email, or email attachment). When a user views the web page, the vulnerability could allow remove code execution. Affected Software/OS: MS Access Snapshot (with/without) MS Office Access (2000/2002/2003) - Windows (All). Solution: The vendor has released updates. Please see the references for more information. CVSS Score: 6.8 CVSS Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-2463 BugTraq ID: 30114 http://www.securityfocus.com/bid/30114 Cert/CC Advisory: TA08-189A http://www.us-cert.gov/cas/techalerts/TA08-189A.html Cert/CC Advisory: TA08-225A http://www.us-cert.gov/cas/techalerts/TA08-225A.html CERT/CC vulnerability note: VU#837785 http://www.kb.cert.org/vuls/id/837785 http://www.exploit-db.com/exploits/6124 HPdes Security Advisory: HPSBST02360 http://marc.info/?l=bugtraq&m=121915960406986&w=2 HPdes Security Advisory: SSRT080117 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6120 http://www.securitytracker.com/id?1020433 http://secunia.com/advisories/30883 http://www.vupen.com/english/advisories/2008/2012/references XForce ISS Database: microsoft-snapshotviewer-code-execution(43613) https://exchange.xforce.ibmcloud.com/vulnerabilities/43613 |
Copyright | Copyright (C) 2008 Greenbone AG |
Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |