Soluciones para vulnerabilidades

La exploración de vulnerabilidades periódica de Nimsoft Cloud Monitor busca la vulnerabilidad siguiente. Para ver las soluciones añadidas más recientemente que Nimsoft Cloud Monitor explora, visite Soluciones para vulnerabilidades.

Categoría: Windows : Microsoft Bulletins Factor de riesgo: High Añadido: 10 mar 2010
Synopsis:

Arbitrary code can be executed on the remote host through Microsoft Office Excel.

Description:

The remote host contains a version of Microsoft Office Excel 2002, Microsoft Office Excel 2003, Microsoft Office Excel 2007, Microsoft Office Excel Viewer, or Microsoft Office Compatibility Pack that is affected by several vulnerabilities.

If an attacker can trick a user on the affected system into open a specially crafted Excel file using the affected application, he may be able to leverage this issue to execute arbitrary code subject to the user's privileges.

Solution:

Microsoft has released a set of patches for Office Excel 2002, Office Excel 2003, Excel 2007, Office Excel Viewer and Office Compatibility Pack :

http://www.microsoft.com/technet/security/bulletin/ms10-017.mspx

Risk factor:

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)