CVE-2006-6561: Critical severity microsoft works vulnerability
Unspecified vulnerability in Microsoft Word 2000, 2002, and Word Viewer 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted DOC file that triggers memory corruption, as demonstrated via the 12122006-djtest.doc file, a different issue than CVE-2006-5994 and CVE-2006-6456.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6561?
CVE-2006-6561 is a critical vulnerability that allows remote attackers to execute arbitrary code through a crafted DOC file.
How do I fix CVE-2006-6561?
To mitigate CVE-2006-6561, users should update Microsoft Office to the latest version and apply all available security patches.
Which software is affected by CVE-2006-6561?
CVE-2006-6561 affects Microsoft Word 2000, 2002, and 2003, as well as Word Viewer 2003.
What type of attack does CVE-2006-6561 allow?
CVE-2006-6561 allows user-assisted remote attackers to execute arbitrary code via a specially crafted DOC file.
Is CVE-2006-6561 exploitable without user interaction?
CVE-2006-6561 is not exploitable without user interaction, as the attack requires the user to open the malicious DOC file.