|
|

CVE Reference: CVE-2006-0008 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2006-0008 |
|
|
Description: The ShellAbout API call in Korean Input Method Editor (IME) in Korean versions of Microsoft Windows XP SP1 and SP2, Windows Server 2003 up to SP1, and Office 2003, allows local users to gain privileges by launching the "shell about dialog box" and clicking the "End-User License Agreement" link, which executes Notepad with the privileges of the program that displays the about box. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/24492 ST 1015631 SAID Secunia Advisory: SA18859 OVAL http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1595 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1650 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1664 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1688 http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:727 MS http://www.microsoft.com/technet/security/bulletin/ms06-009.mspx MISC http://www.ryanstyle.com/alert/my/5/ms06_009_eng.html CERT-VN 739844 BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/425141/100/0/threaded BID 16643 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |