>> Microsoft Windows Agent "ACF" File Handling Code Execution Vulnerability (MS06-068)
Title : Microsoft Windows Agent "ACF" File Handling Code Execution Vulnerability (MS06-068) VUPEN ID : VUPEN/ADV-2006-4506 CVE ID : CVE-2006-3445
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-11-14
Technical Description
A vulnerability has been identified in Microsoft Windows, which could be exploited by remote attackers to take complete control of an affected system. This flaw is due to a memory corruption error in the Microsoft Agent when handling specially crafted ".ACF" files, which could be exploited by attackers to cause a denial of service or execute arbitrary commands by convincing a user to visit a malicious Web page.