Portal IT :: News, download, directory


Search: Saturday 11 October 2008









Add to Google Add to My Yahoo!


  Add to Favorites   Set Home Page





« october 2008
s m t w t f s
28 29 30 1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30 31 1
2 3 4 5 6 7 8







Microsoft Warns About ActiveX-Related Attacks
Published on Security  |  July 8, 2008, 11:07

A new wave of attacks has hit the web, and this time they are targeted on an ActiveX vulnerability, Microsoft warns.

The ActiveX control for the Snapshot Viewer for Microsoft Access enables users to view an Access report snapshot without having the standard or run-time versions of Microsoft Office Access. The vulnerability only affects the ActiveX control for the Snapshot Viewer for Microsoft Office Access 2000, Microsoft Office Access 2002, and Microsoft Office Access 2003.

The Redmond company announced that it investigates a “potential vulnerability in the ActiveX control for the Snapshot Viewer for Microsoft Access”, which could be exploited by constructing a specially crafted Web page.

The attacks are most likely to come from compromised Web sites and Web sites that accept or host user-provided content. Specially content could exploit this vulnerability if the user visits the website.

The successful exploitation of the flaw would grant the attacker the same user rights as the local user. As always, users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.




Rate this       Low   High
Curent Rating: 3.1/5 by 9 users
 Print       Email      IM 




 
More Security News
 
Daily News Alert

 
Advertising
 
Top Rated Security News This Month