This script is Copyright (C) 2013 Tenable Network Security, Inc.
It is possible to execute arbitrary code on the remote Windows host
using the Unicode Scripts Processor.
The version of Microsoft Windows installed on the remote host includes
a vulnerable version of the Unicode Script Processor, also known as
Uniscribe. Some font types are not parsed correctly, which can result
in memory corruption. An attacker could exploit this by tricking a user
into viewing a specially crafted web page or opening a file containing
malicious OpenType fonts, resulting in arbitrary code execution.
See also :
Microsoft has released a set of patches for Windows XP and 2003.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 6.9
Public Exploit Available : false