First published: Wed Apr 12 2006(Updated: )
Unspecified vulnerability in the RDS.Dataspace ActiveX control, which is contained in ActiveX Data Objects (ADO) and distributed in Microsoft Data Access Components (MDAC) 2.7 and 2.8, allows remote attackers to execute arbitrary code via unknown attack vectors.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Data Access Components | =2.8-sp1 | |
Microsoft Data Access Components | =2.8-sp2 | |
Microsoft Data Access Components | =2.8 | |
Microsoft Data Access Components | =2.7-sp1 | |
Microsoft Data Access Components | =2.7 | |
Microsoft Data Access Components | =2.5-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-0003 is considered to have a high severity due to the potential for remote attackers to execute arbitrary code.
To mitigate CVE-2006-0003, update Microsoft Data Access Components to the latest available versions.
CVE-2006-0003 affects Microsoft Data Access Components versions 2.5 SP3, 2.7, 2.7 SP1, 2.8, 2.8 SP1, and 2.8 SP2.
Yes, CVE-2006-0003 can be exploited remotely, allowing attackers to execute arbitrary code.
Preventative measures include disabling ActiveX controls when not needed and ensuring all components are kept up to date.