stargeek
PHP news website logo.
home    PHP scripts    articles    seo tools    links    search    contact    shop    realtors


Re: Microsoft Word Email Object Data Vulnerability







Re: Microsoft Word Email Object Data
Vulnerability

Re: Microsoft Word Email Object Data
Vulnerability
07/09/2004 04:43 PM

http-equiv_at_excite.com (Jul 09 2004)




This is a GrokNews Entry: (what is grok?)





Similar Items

Re: Microsoft Word Email Object Data Vulnerability

Grok Headline matches for Re: Microsoft Word Email Object Data Vulnerability

Microsoft Word Email Object Data
Vulnerability


Microsoft Word Email Object Data
Vulnerability
07/09/2004 12:05 PM
James C. Slora, Jr. (Jul 08 2004)

Outlook / Word Object Tag Vulnerability


Outlook / Word Object Tag Vulnerability 07/13/2004 10:33 AM
“James C. Slora has reported a vulnerability in Microsoft Word and Outlook, potentially allowing malicious people to gain system access. The problem arises when Word is used to edit mails in Outlook. This can possibly be exploited to execute arbitrary code on a user’s system if the user is tricked into forwarding a malicious email with an unclosed ‘’ tag. Reportedly, this can only be exploited when mails are forwarded. This may also be possible to exploit through malicious HTML documents if edited in Word. Solution: Do not use Word as the default mail editor.”

Microsoft Security Bulletin MS03-050:
Vulnerability in Microsoft Word and
Microsoft Excel Could Allow Arbitrary
Code to Run (831527)


Microsoft Security Bulletin MS03-050:
Vulnerability in Microsoft Word and
Microsoft Excel Could Allow Arbitrary
Code to Run (831527)
11/13/2003 12:36 AM
A security vulnerability exists in Microsoft Word that could allow malicious code execution. This vulnerability exists due to to the way Word checks the length of a data value (Macro names) embedded in a document. If a specially crafted document were to be opened it could overflow a data value in Word and allow arbitrary code to be executed. If successfully exploited, an attacker could then take the same actions as the user had permissions to carry out, such as adding, changing or deleting data or files, communicating with a web site or formatting the hard drive.

Vulns: Microsoft Windows Object Identity
Network Communication Vulnerability


Vulns: Microsoft Windows Object Identity
Network Communication Vulnerability
04/17/2004 04:41 PM
SecurityFocus Apr 17 2004 8:26PM GMT

Opening a Word Document Using the
Word.Application Object


Opening a Word Document Using the
Word.Application Object
07/29/2004 10:09 AM

Microsoft bridging relational, object,
XML data models


Microsoft bridging relational, object,
XML data models
03/22/2005 07:27 PM
Microsoft Research has had 7,000 downloads of its Comega programming technology, which is intended to bridge the gap between relational, object, and XML data models.

Critical Update for Microsoft Data
Access Components - Disable ADODB.Stream
object from Internet Explorer


Critical Update for Microsoft Data
Access Components - Disable ADODB.Stream
object from Internet Explorer
07/04/2004 12:11 PM

Microsoft Word Hidden Data, E-Records
and Privacy


Microsoft Word Hidden Data, E-Records
and Privacy
02/10/2004 02:47 AM
BeSpacific Feb 10 2004 6:18AM GMT

Critical Update for Microsoft Data
Access Components - Disable ADODB.Stream
object from Internet Explorer (KB870669)


Critical Update for Microsoft Data
Access Components - Disable ADODB.Stream
object from Internet Explorer (KB870669)
07/02/2004 11:25 AM
Adodb.stream provides a method for reading and writing files on a hard drive. This by-design functionality is sometimes used by web applications. However, when combined with known security vulnerabilities in Microsoft Internet Explorer, it could allow an internet web site to execute script from the Local Machine Zone (LMZ). This occurs because the ADODB.Stream object allows access to the hard drive when hosted within Internet Explorer.

Vulns: Microsoft Outlook Express
Malformed Email Header Denial Of Service
Vulnerability


Vulns: Microsoft Outlook Express
Malformed Email Header Denial Of Service
Vulnerability
07/19/2004 06:36 PM
SecurityFocus Jul 19 2004 11:05PM GMT

Critical Update for Microsoft Data
Access Components - Disable ADODB.Stream
object from Internet Explorer - Win9x
(KB870669)


Critical Update for Microsoft Data
Access Components - Disable ADODB.Stream
object from Internet Explorer - Win9x
(KB870669)
07/03/2004 01:45 PM
Adodb.stream provides a method for reading and writing files on a hard drive. This by-design functionality is sometimes used by web applications. However, when combined with known security vulnerabilities in Microsoft Internet Explorer, it could allow an internet web site to execute script from the Local Machine Zone (LMZ). This occurs because the ADODB.Stream object allows access to the hard drive when hosted within Internet Explorer.

Download details: Critical Update for
Microsoft Data Access Components -
Disable ADODB.Stream object from
Internet Explorer (KB870669)


Download details: Critical Update for
Microsoft Data Access Components -
Disable ADODB.Stream object from
Internet Explorer (KB870669)
07/07/2004 04:43 AM
workaround fix for that latest security threat .. Microsoft Download Center .. Windows NT/2000/XP/2003 .. Update

microsoft.com/downloads/details.aspx?FamilyId=4D056748-C538-4 6F6-B7C8-2FBFD0D237E3&displaylang=en
track this site | 4 links


PDF2Office Personal - Microsoft Word
Plug-in to Directly Open and Convert PDF
Documents to Microsoft Word Format


PDF2Office Personal - Microsoft Word
Plug-in to Directly Open and Convert PDF
Documents to Microsoft Word Format
08/27/2004 04:07 PM
Recosoft's PDF2Office Personal, a PDF to Word converter, adds to a family of products addressing PDF document conversion. [PRWEB Aug 27, 2004]

Object data holder framework


Object data holder framework 07/13/2002 12:55 AM
CNET Jul 12 2002 11:27PM ET

Bonus Tip: Send Email from Word, Excel,
PowerPoint


Bonus Tip: Send Email from Word, Excel,
PowerPoint
09/23/2004 12:41 AM
G4 Tech TV Sep 23 2004 4:53AM GMT

Microsoft Word 5.1: The Apex of Word
Processing


Microsoft Word 5.1: The Apex of Word
Processing
06/18/2004 12:37 PM

iwconfig vulnerability - the last code
was demaged sending by email


iwconfig vulnerability - the last code
was demaged sending by email
11/12/2003 06:52 PM
hekuran doli (Nov 12 2003)

Vulns: SqWebMail Email Header HTML
Injection Vulnerability


Vulns: SqWebMail Email Header HTML
Injection Vulnerability
06/24/2004 09:32 PM
SecurityFocus Jun 25 2004 1:01AM GMT

Vulns: SquirrelMail Email Header HTML
Injection Vulnerability


Vulns: SquirrelMail Email Header HTML
Injection Vulnerability
06/03/2004 06:29 PM
SecurityFocus Jun 3 2004 9:50PM GMT

Vulns: Horde IMP Email Header HTML
Injection Vulnerability


Vulns: Horde IMP Email Header HTML
Injection Vulnerability
07/08/2004 09:02 PM
SecurityFocus Jul 9 2004 0:07AM GMT

Vulns: SquirrelMail From Email Header
HTML Injection Vulnerability


Vulns: SquirrelMail From Email Header
HTML Injection Vulnerability
06/05/2004 04:37 PM
SecurityFocus Jun 5 2004 8:19PM GMT

Vulns: IlohaMail Email Header HTML
Injection Vulnerability


Vulns: IlohaMail Email Header HTML
Injection Vulnerability
07/08/2004 09:02 PM
SecurityFocus Jul 9 2004 0:05AM GMT

MDKSA-2004:160 - Updated kdelibs
packages fix konqueror email
vulnerability


MDKSA-2004:160 - Updated kdelibs
packages fix konqueror email
vulnerability
12/30/2004 07:35 PM
Mandrake Linux Security Team (Dec 29 2004)

Vulns: Open WebMail Email Header HTML
Injection Vulnerability


Vulns: Open WebMail Email Header HTML
Injection Vulnerability
07/08/2004 09:02 PM
SecurityFocus Jul 9 2004 0:06AM GMT

Vulns: Usermin HTML Email Script Code
Execution Vulnerability


Vulns: Usermin HTML Email Script Code
Execution Vulnerability
06/21/2004 08:16 PM
SecurityFocus Jun 22 2004 1:03AM GMT

Vulns: BasiliX Webmail Email Header HTML
Injection Vulnerability


Vulns: BasiliX Webmail Email Header HTML
Injection Vulnerability
07/08/2004 09:02 PM
SecurityFocus Jul 9 2004 0:04AM GMT

Vulns: Webmin / Usermin HTML Email
Command Execution Vulnerability


Vulns: Webmin / Usermin HTML Email
Command Execution Vulnerability
09/16/2004 12:41 PM
SecurityFocus Sep 16 2004 4:36PM GMT

Search Inbox Data Using Smart Tags in
Word 2003


Search Inbox Data Using Smart Tags in
Word 2003
09/16/2004 01:39 AM
Link your data points in Microsoft Office Word 2003 to Inbox data stored in Microsoft Exchange Server. Use smart tags in Word to create search queries executed against the Exchange message store. Search the message store programmatically to acquire results. Then, import search result data into the Word document.

Leap SE 2.0 turns System Requirements
into Object Models and Data Models,
Automatically


Leap SE 2.0 turns System Requirements
into Object Models and Data Models,
Automatically
08/16/2004 02:37 AM
Leap SE—a CASE tool that generates object models directly from system requirements—now generates a data model as well, dramatically shortening the systems analysis phase of software development projects. [PRWEB Aug 16, 2004]

Solar Data Centers Adds Email Tool


Solar Data Centers Adds Email Tool 04/13/2004 12:39 PM
theWHIR Apr 13 2004 5:13PM GMT

Corporate Email Is Expensive Thanks To
Data Retention Laws


Corporate Email Is Expensive Thanks To
Data Retention Laws
04/26/2004 02:38 PM
While we've all heard stories of companies getting burned by informal internal emails that say something that looks terrible when it shows up in court years later, the various requirements for companies to store old emails is proving to be quite expensive. Certainly, the cost of not complying with the regulations can be quite costly as well, but just managing so much email - and finding the appropriate emails - is proving to be a tremendous added expense for some companies. This article makes me wonder if Google shouldn't look to offer an enterprise version of their Gmail system. Already, Google sells a box that companies can use to search their internal corporate network - so, why not offer a similar enterprise email offering. That way, searching and sorting through tremendous amounts of email is likely to be much less burdensome. Still, you have to wonder if all these stories of emails coming back to haunt people will drive certain executives to move to other channels of communication that aren't recorded - whether it's outside email accounts, instant messaging, or just simply talking on the phone or face to face.

Word 2003: XML Toolbox for Microsoft
Office Word 2003


Word 2003: XML Toolbox for Microsoft
Office Word 2003
12/03/2003 12:40 AM
This toolbox assists the XML content author and developer working with the new XML features of Word 2003. The Word XML Toolbox requires that .NET Programmability Support is enabled. For .NET Programmability Support to be installed during the Office 2003 setup, the PIAs require the .NET Framework 1.1 already be installed. It is recommended that you install the Microsoft .NET Framework 1.1 before you install Microsoft Office 2003. With the .NET Framework 1.1 already installed, a complete installation of Office 2003 will install all of the PIAs.

Microsoft steers away from object
orientation


Microsoft steers away from object
orientation
01/27/2004 12:38 PM
ZDNet UK Jan 27 2004 4:40PM GMT

SlipStream Data Launches Version 3.2 Of
The Leading Web And Email Accelerator


SlipStream Data Launches Version 3.2 Of
The Leading Web And Email Accelerator
07/30/2004 03:10 AM
New version delivers even faster performance, enhanced graphics and easier integration with 3rd party applications [PRWEB Jul 30, 2004]

It Wasn't a Tornado or an Earthquake; it
was an Email. Managing the growing risk
of critical data loss


It Wasn't a Tornado or an Earthquake; it
was an Email. Managing the growing risk
of critical data loss
06/24/2004 07:31 PM
Business Knowledge Source Jun 24 2004 11:04PM GMT

Linksys BEFSR41 DHCP vulnerability
server leaks network data


Linksys BEFSR41 DHCP vulnerability
server leaks network data
06/07/2004 01:53 PM
Lance Armstrong (Jun 07 2004)

Microsoft J# Browser Controls HTML
APPLET to OBJECT Tag Converter


Microsoft J# Browser Controls HTML
APPLET to OBJECT Tag Converter
07/01/2004 03:52 AM
Microsoft J# Browser Control Tag Converter tool replaces the APPLET tag or the Java applet OBJECT tag with HTML code that contains J# Browser Control OBJECT tag.

Email Hosting Provider Updates Privacy
Policy to Ensure Protection of Customer
Data


Email Hosting Provider Updates Privacy
Policy to Ensure Protection of Customer
Data
08/30/2004 02:46 AM
Excedent Adds Privacy Safeguards for Webmail.us Customers and Service Provider Partners [PRWEB Aug 30, 2004]

Vulns: Microsoft Internet Explorer
ADODB.Stream Object File Installation
Weakness


Vulns: Microsoft Internet Explorer
ADODB.Stream Object File Installation
Weakness
06/13/2004 08:11 PM
SecurityFocus Jun 13 2004 11:14PM GMT
Grok Description matches for Re: Microsoft Word Email Object Data Vulnerability
GrokA matches for Re: Microsoft Word Email Object Data Vulnerability

Re: Microsoft Word Email Object Data Vulnerability

The following phrases have been identified by the grok system as matching this entry:

















Also check out:


Grok

Ipod Porn on the
Rise

Brief Abstract of
Wikipedia's
Mesothelioma Cancer
page

Get first aid
instructions in your
cell phone

IE is crap
JSPWiki gains
podcasting support

Microsoft Advances
Search to the
Desktop

gospy-applet 0.4.0
CPSSkins 2.1.5
(Development)

AweMUD 0.22
Scriptix 0.30
Centre 1.02
microGUI for sWM 2.0
Dvorak international
keyboard layout for
xkb 1.1

Krang BricLoader
1.11

qmail-spp 0.3
Moneydance 2004r3
AltaVista Hacker
Works on MSN Search

Apple Takes Aim at
Microsoft With Tiger
Server

Stock Announcement:
Toy Palace

Collector's
Collections Gallery:
Steve Fish

Kabaya LEGO Set 6965
Apple Makes a Play
for NT Orphans

Bush Rallies G.O.P.
Supporters in
Pennsylvania

Court Deals Blow to
Effort to Bury
Nuclear Waste in
Nevada

Oracle, DOJ lay out
case in court papers

Parties split on
barrier ruling

Disabled And The
Net: Stanca, New Law
Is Innovative

CSS Schizophrenia
Guy Who Stole
AltaVista Source
Code Working On
Search At Microsoft

Dirty-Word Filters
Prove Costly

Beer: Hops, Barley
and Biotech?

Nextel's Sweet
Spectrum Win

Tiny Hard Drives
Coming to Cell
Phones

The silent monopoly
There is enough
relief food, says
Coast PC

Sky reinstates
roulette games on
iTV

The Mall
Senate Report Sees
No Formal Iraq-Qaeda
Ties (Reuters)

AP: Diamonds Routed
Through Switzerland
(AP)

SiteConnect Server 6
adds shopping cart,
more

Top Tip: Best way to
write a GUI for C++?

W3 Data Acquires
411.com

What Should Yahoo!
Do?

Local and Regional
Search: A Primer

Attack of the
Tuxissa Virus

BotWorx
The Magnitude of
Pennsylvania's Slots

Protein Design Labs'
Windfall

Abbott Labs Concocts
Strong Q2

Rigases Off to the
Big House

Next Target:
Mozilla?

Lunch: $25,000 Per
Person

China Caves on Chips
GE's Optimistic
Catalyst

No Place for
Children

what is grok?