COM Validation VulnerabilityID: oval:org.mitre.oval:def:7286 | Date: (C)2010-03-09 (M)2024-02-29 |
Class: VULNERABILITY | Family: windows |
Windows Shell and WordPad in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7; Microsoft Office XP SP3; Office 2003 SP3; and Office System 2007 SP1 and SP2 do not properly validate COM objects during instantiation, which allows remote attackers to execute arbitrary code via a crafted file, aka "COM Validation Vulnerability."
Platform: |
Microsoft Windows Server 2019 |
Microsoft Windows Server 2016 |
Microsoft Windows 2000 |
Microsoft Windows 7 |
Microsoft Windows 8 |
Microsoft Windows 8.1 |
Microsoft Windows Server 2003 |
Microsoft Windows 10 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Vista |
Microsoft Windows XP |
Microsoft Windows Server 2008 R2 |
Product: |
Microsoft Office XP |
Microsoft Excel 2003 |
Microsoft PowerPoint 2003 |
Microsoft Publisher 2003 |
Microsoft Word 2003 |
Microsoft Excel 2007 |
Microsoft PowerPoint 2007 |
Microsoft Publisher 2007 |
Microsoft Visio 2007 |
Microsoft Word 2007 |
Microsoft Office 2007 |
Microsoft Office 2003 |
Microsoft Office Visio 2003 |