Vulnerability in Microsoft Office Web Components 2000 allows execution of arbitrary code
CVE-2006-4695

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
31 December 2006

Summary

A vulnerability exists in certain COM objects within Microsoft Office Web Components 2000. This flaw allows user-assisted remote attackers to execute arbitrary code on the victim's system by utilizing a specially crafted URL. The attack can occur when users interact with malicious URLs, potentially leading to unauthorized access and control over the affected systems.

References

EPSS Score

50% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.