>> Microsoft Office Word Code Execution Vulnerability (MS08-042)
Title : Microsoft Office Word Code Execution Vulnerability (MS08-042) VUPEN ID : VUPEN/ADV-2008-2028 CVE ID : CVE-2008-2244 CWE ID : CWE-20
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-07-09
A vulnerability has been identified in Microsoft Office, which could be exploited by attackers to take complete control of an affected system. This issue is caused by a memory corruption error when handling malformed Word documents, which could be exploited by attackers to crash a vulnerable application or execute arbitrary commands by tricking a user into opening a specially crafted document.
Note: This vulnerability is currently being exploited in the wild.