Microsoft Office Products Insecure Library Loading Vulnerability
Summary:
Check for the Office products version
Description:
Overview: This host is installed with microsoft product(s) and is prone to insecure library loading vulnerability.
Vulnerability Insight: The flaw is due to the application insecurely loading certain librairies from the current working directory, which could allow attackers to execute arbitrary code by tricking a user into opening a file from a network share.
Impact: Successful exploitation will allow the attackers to execute arbitrary code and conduct DLL hijacking attacks.
Impact Level: Application
Affected Software/OS: Microsoft Visio 2003. Microsoft Office Groove 2007. Microsoft Office PowerPoint 2007/2010.
Fix:: No solution or patch is available as of 27th September, 2010. Information regarding this issue will be updated once the solution details are available. For updates refer to http://www.microsoft.com/downloads/en/default.aspx