Microsoft Word Malformed String Arbitrary Remote Code Execution Vulnerability

Microsoft Word is prone to a remote code-execution vulnerability.

An attacker could exploit this issue by enticing a victim to open a malicious Word file. If the vulnerability is successfully exploited, this could result in the execution of arbitrary code in the context of the currently logged-in user.

This issue is being actively exploited in the wild by two trojans.


 

Privacy Statement
Copyright 2010, SecurityFocus