First published: Wed Nov 01 2006(Updated: )
Cross-zone scripting vulnerability in the WMI Object Broker (WMIScriptUtils.WMIObjectBroker2) ActiveX control (WmiScriptUtils.dll) in Microsoft Visual Studio 2005 allows remote attackers to bypass Internet zone restrictions and execute arbitrary code by instantiating dangerous objects, aka "WMI Object Broker Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Visual Studio .NET | =2005 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4704 has a high severity rating due to the potential for remote code execution.
To fix CVE-2006-4704, update Microsoft Visual Studio 2005 to the latest security patch provided by Microsoft.
CVE-2006-4704 is classified as a cross-zone scripting vulnerability.
CVE-2006-4704 specifically affects Microsoft Visual Studio .NET 2005.
Exploiting CVE-2006-4704 could allow attackers to bypass Internet zone restrictions and execute arbitrary code.