DHTML Editing Component ActiveX Control Could Allow Remote Code Execution

A vulnerability exists that could allow an intruder to discover private information or execute code on a user's system. A successful exploit could allow the intruder to take complete control of a user's system.

ITPro Today

February 8, 2005

1 Min Read
ITPro Today logo

ReportedFebruary 8, 2005 by Microsoft

VERSIONS AFFECTED


DESCRIPTION

A vulnerability existsin the Dynamic HTML (DHTML) Editing Component ActiveX control thatcould allow an intruder to discover private information or executecode on a user's system. A successful exploit could allow theintruder to take complete control of a user's system.

VENDOR RESPONSE

Microsoft has releasedSecurity Bulletin MS05-013, "Vulnerabilityin the DHTML Editing Component ActiveX Control Could Allow RemoteCode Execution (891781),"and a patch to correct the problem.





Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like