Korean
<< Back
VID 26523
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description The Hotfix (MS10-057, 2269707) for 'Vulnerability in Microsoft Office Excel Could Allow Remote Code Execution' has not been applied.
This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Excel file. The update addresses the vulnerability by changing the way that Microsoft Office Excel parses specially crafted Excel files.

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
http://www.microsoft.com/technet/security/Bulletin/MS10-057.mspx

* Platforms Affected:
Microsoft Office XP Service Pack 3
Microsoft Office 2003 Service Pack 3
Microsoft Office 2004 for Mac
Microsoft Office 2008 for Mac
Open XML File Format Converter for Mac
Recommendation Apply the appropriate patch (2269707) for your system, as listed in Microsoft Security Bulletin MS10-057 at http://www.microsoft.com/technet/security/bulletin/ms10-057.mspx
Related URL CVE-2010-0821,CVE-2010-0822,CVE-2010-0823,CVE-2010-0824,CVE-2010-1245,CVE-2010-1246,CVE-2010-1247,CVE-2010-1248,CVE-2010-1249 (CVE)
Related URL 40518,40529,40530,40531 (SecurityFocus)
Related URL (ISS)