Follow:

Exploit:Win/MSIE.ActiveX.PE!CVE-2008-2462

Severity rating
Critical

Class/Type
Exploit

Discovered date
2008-10-15T00:00:00

Attack vector
Remote

Authentication required
No

Public exploits available
Yes

Signature detection
Low



On this page




Description

A remote code execution vulnerability exists in the ActiveX control for the Snapshot Viewer for Microsoft Access. An attacker could exploit the vulnerability by constructing a specially crafted Web page. When a user views the Web page, the vulnerability could allow remote code execution.



Impact

An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user.



Technical details (analysis)

This vulnerability is caused by a synchronization issue when saving files using the ActiveX control for Snapshot Viewer.



Affected software

Microsoft Office 2000 Service Pack 3
Microsoft Office XP Service Pack 3
Microsoft Office 2003 Service Pack 2
Microsoft Office 2003 Service Pack 3




Non-affected software

All applications not on the affected list.



References




Solutions




NIS signature

Name: Exploit:Win/MSIE.ActiveX.PE!CVE-2008-2462
Release Date: 2008-10-15T00:00:00



Known false positives

This signature can cause false positives if you are not running any of the affected software versions or if you've already applied the patch



Work-arounds

Prevent COM objects from running in Internet Explorer
Configure Internet Explorer to prompt before running Active Scripting or to disable Active Scripting in the Internet and Local intranet security zone
Set Internet and Local intranet security zone settings to High to prompt before running ActiveX Controls and Active Scripting in these zones