A vulnerability has been identified in Microsoft Windows, which could be exploited by remote attackers to take complete control of an affected system. This flaw is due to an error in the "RDS.Dataspace" ActiveX control that fails to ensure that it interacts safely when it is hosted on a web page, which could be exploitd by remote attackers to execute arbitrary commands by tricking a user into visiting a specially crafted web page.