Microsoft Word .asd Macro File Execution Vulnerability
BID:2760
Info
Microsoft Word .asd Macro File Execution Vulnerability
| Bugtraq ID: | 2760 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | May 23 2001 12:00AM |
| Updated: | May 23 2001 12:00AM |
| Credit: | Discovered/rediscovered and notified Securityfocus via email by Steven McLeod <[email protected]> on May 23, 2001. |
| Vulnerable: |
Microsoft Word 2000 |
| Not Vulnerable: |
Microsoft Word 2000 SR1a Microsoft Word 2000 SR1 Microsoft Word 2000 SP2 |
Exploit / POC
Microsoft Word .asd Macro File Execution Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Word .asd Macro File Execution Vulnerability
Solution:
Microsoft has released a Word Mail Merge Security Update which rectifies this issue:
Microsoft Word 2000
Solution:
Microsoft has released a Word Mail Merge Security Update which rectifies this issue:
Microsoft Word 2000
References
Microsoft Word .asd Macro File Execution Vulnerability
References:
References:
- WD2000: Macros Enabled When Word Automatically Opens ASD Files (Microsoft)
- Word 2000 Update: Mail Merge Security (Microsoft)