Vulnerability Solutions

The Nimsoft Cloud Monitor Periodic Vulnerability Scan checks for the vulnerability below. To see the most recently added vulnerability solutions that are scanned by WatchMouse, go to the Vulnerability Solutions overview

Category: Windows : Microsoft Bulletins Risk factor: High Added: 10 Mar 2010
Synopsis:

Arbitrary code can be executed on the remote host through Microsoft Office Excel.

Description:

The remote host contains a version of Microsoft Office Excel 2002, Microsoft Office Excel 2003, Microsoft Office Excel 2007, Microsoft Office Excel Viewer, or Microsoft Office Compatibility Pack that is affected by several vulnerabilities.

If an attacker can trick a user on the affected system into open a specially crafted Excel file using the affected application, he may be able to leverage this issue to execute arbitrary code subject to the user's privileges.

Solution:

Microsoft has released a set of patches for Office Excel 2002, Office Excel 2003, Excel 2007, Office Excel Viewer and Office Compatibility Pack :

http://www.microsoft.com/technet/security/bulletin/ms10-017.mspx

Risk factor:

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)