MS08-041 ? Critical: Vulnerability in the ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution (955617) - Version:2.1 |
|
| BugsAlert Home > MS08-041 ? Critical: Vulnerability in the ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution (955617) - Version:2.1 | |
|
Severity Rating: Critical - Revision Note: V2.1 (October 15, 2008): Added reference to Microsoft Knowledge Base Article (KB957198) for SnapShot Viewer for Microsoft Access. Also, clarified that users who have successfully installed the update for Microsoft Office 2000 Service Pack 3, Office XP Service Pack 2, or Office 2003 Service Pack 2 or Office 2003 Service Pack 3 do not need to reinstall the update for the standalone Snapshot Viewer for Microsoft Access. Summary: This security update resolves a privately reported vulnerability in the ActiveX control for the Snapshot Viewer for Microsoft Access. An attacker could exploit the vulnerability by constructing a specially crafted Web page. When a user views the Web page, the vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Original Source: http://www.microsoft.com/technet/security/bulletin/MS08-041.mspx?pubDate=2008-10-15 Learn more about MS08-041 ? Critical: Vulnerability in the ActiveX Control for the Snapshot Viewer for Microsoft Access Could Allow Remote Code Execution (955617) - Version:2.1 |
|
|
Tags: ms08-041 critical vulnerability activex control snapshot viewer microsoft access remote code execution 955617 version 2.1 |
|
Related Items |
|
|
CVE-2008-4464 (mag_zone)
|
|
|
type of virus
|
|
|
CVE-2008-2096 (backlink_spider)
|
|
|
RoomPHPlanning SQL Injection and Security Bypass
|
|
|
Fedora update for htdig
|
|
|
FrSIRT - GraphicsMagick File Extension Handling Security Bypass Vulnerability
|
|
|
Bugtraq: HPSBTU02325 SSRT080006 rev.1 - HP Internet Express for Tru64 UNIX running PostgreSQL, Arbitrary Code Execution, Privilege Elevation, or Denial of Service (DoS)
|
|