Microsoft Office Web Apps CVE-2014-1813 Remote Code Execution Vulnerability
BID:67290
Info
Microsoft Office Web Apps CVE-2014-1813 Remote Code Execution Vulnerability
| Bugtraq ID: | 67290 |
| Class: | Design Error |
| CVE: |
CVE-2014-1813 |
| Remote: | Yes |
| Local: | No |
| Published: | May 13 2014 12:00AM |
| Updated: | May 13 2014 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Microsoft Office Web Apps 2010 SP1 |
| Not Vulnerable: | |
Discussion
Microsoft Office Web Apps CVE-2014-1813 Remote Code Execution Vulnerability
Microsoft Office Web Apps is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the W3WP service account user.
Microsoft Office Web Apps is prone to a remote code-execution vulnerability.
An attacker can exploit this issue to execute arbitrary code in the context of the W3WP service account user.
Exploit / POC
Microsoft Office Web Apps CVE-2014-1813 Remote Code Execution Vulnerability
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Currently, we are not aware of any exploits. If you feel we are in error or if you are aware of any more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Office Web Apps CVE-2014-1813 Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Microsoft Office Web Apps CVE-2014-1813 Remote Code Execution Vulnerability
References:
References:
- Microsoft SharePoint Homepage (Microsoft)
- Microsoft Security Bulletin MS14-022 (Microsoft)