This script is Copyright (C) 2010-2016 Tenable Network Security, Inc.
Arbitrary code can be executed on the remote host through Microsoft
The remote Windows host is running a version of Microsoft Word or Word
Viewer that is affected by several vulnerabilities.
If an attacker can trick a user on the affected host into opening a
specially crafted Word file, they could leverage this issue to execute
arbitrary code subject to the user's privileges.
See also :
Microsoft has released a set of patches for Office XP, 2003, 2007,
2010, Word Viewer, Office Compatibility Pack, and Word Web Apps.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 7.7
Public Exploit Available : true
Family: Windows : Microsoft Bulletins
Nessus Plugin ID: 49956 ()
Get Nessus Professional to scan unlimited IPs, run compliance checks & moreBuy Nessus Professional Now