Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Windows Vista Contacts Gadget Remote Code Execution Vulnerability

Windows Vista is prone to a remote code-execution vulnerability because it fails to adequately sanitize user-supplied data.

Attackers exploit this issue by coercing unsuspecting users to add or import malicious contact files.

Attackers can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Successful attacks may facilitate the remote compromise of affected computers.







 

Privacy Statement
Copyright 2009, SecurityFocus