>> Microsoft Office Multiple File Handling Code Execution Vulnerabilities (MS06-062)
Title : Microsoft Office Multiple File Handling Code Execution Vulnerabilities (MS06-062) VUPEN ID : VUPEN/ADV-2006-3981 CVE ID : CVE-2006-3434 - CVE-2006-3650 - CVE-2006-3864 - CVE-2006-3868
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-10-10
Technical Description
Multiple vulnerabilities have been identified in Microsoft Office, which could be exploited by attackers to take complete control of an affected system. These flaws are due to memory corruption errors when handling files or documents containing a malformed record or Smart Tag, which could be exploited by attackers to execute arbitrary commands by tricking a user into opening a specially crafted document or web page.