Summary
This host is installed with Microsoft Windows Sidebar and Gadgets and is prone to remote code execution vulnerability.
Impact
Successful exploitation could allow remote attackers to execute arbitrary code as the logged-on user.
Impact Level: System/Application
Solution
Apply the Patch from below links,
http://technet.microsoft.com/en-us/security/advisory/2719662
Insight
Windows Sidebar when running insecure Gadgets allows an attacker to run arbitrary code.
Affected
Microsoft Windows 7 x32/x64 Edition Service Pack 1 and prior Microsoft Windows Vista x32/x64 Edition Service Pack 2 and prior
References
Severity
Classification
-
CVSS Base Score: 9.3
AV:N/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Microsoft Windows SMB/NETBIOS NULL Session Authentication Bypass Vulnerability
- Microsoft Windows ActiveX Control Multiple Vulnerabilities (2647518)
- Microsoft Visual Studio Insecure Library Loading Vulnerability
- Microsoft Windows TrueType Font Parsing Privilege Elevation Vulnerability
- Mozilla/Firefox user interface spoofing