Microsoft Office Access Connectivity Engine CVE-2019-0671 Remote Code Execution Vulnerability
BID:106928
CVE-2019-671 |Info
Microsoft Office Access Connectivity Engine CVE-2019-0671 Remote Code Execution Vulnerability
| Bugtraq ID: | 106928 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2019-0671 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 12 2019 12:00AM |
| Updated: | Feb 12 2019 12:00AM |
| Credit: | rgod of 9sg Security Team - [email protected] working with Trend Micro's Zero Day Initiative |
| Vulnerable: |
Microsoft Office 365 ProPlus for 64-bit Systems 0 Microsoft Office 365 ProPlus for 32-bit Systems 0 Microsoft Office 2019 for 64-bit editions 0 Microsoft Office 2019 for 32-bit editions 0 Microsoft Office 2016 (64-bit edition) 0 Microsoft Office 2016 (32-bit edition) 0 Microsoft Office 2013 Service Pack 1 (64-bit editions) Microsoft Office 2013 Service Pack 1 (32-bit editions) Microsoft Office 2013 RT Service Pack 1 0 Microsoft Office 2010 Service Pack 2 (64-bit editions) 0 Microsoft Office 2010 Service Pack 2 (32-bit editions) 0 |
| Not Vulnerable: | |
Discussion
Microsoft Office Access Connectivity Engine CVE-2019-0671 Remote Code Execution Vulnerability
Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of an affected system.
Microsoft Office Access Connectivity Engine is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of an affected system.
Exploit / POC
Microsoft Office Access Connectivity Engine CVE-2019-0671 Remote Code Execution Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Office Access Connectivity Engine CVE-2019-0671 Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Microsoft Office Access Connectivity Engine CVE-2019-0671 Remote Code Execution Vulnerability
References:
References:
- Microsoft Homepage (Microsoft)
- CVE-2019-0671 | Microsoft Office Access Connectivity Engine Remote Code Executio (Microsoft)