First published: Wed Sep 10 2008(Updated: )
Argument injection vulnerability in a URI handler in Microsoft Office XP SP3, 2003 SP2 and SP3, 2007 Office System Gold and SP1, and Office OneNote 2007 Gold and SP1 allow remote attackers to execute arbitrary code via a crafted onenote:// URL, aka "Uniform Resource Locator Validation Error Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =xp-sp3 | |
Microsoft Office | =2003-sp2 | |
Microsoft Office Onenote | =2007-gold | |
Microsoft Office Onenote | =2007-sp1 | |
Microsoft Office | =2007-sp1 | |
Microsoft Office | =2007 | |
Microsoft Office | =2003-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.