Common Tasks

Recent Posts

Community

Email Notifications

Personal Links

Archives

Security Protection - Harry Waldron (CS)

Security Best Practices, Breaking News, & Updates

MDropper.Q - Exploits unpatched MS Word 2000 vulnerability

This new vulnerability only affects Word 2000 and is being exploited in-the-wild.  Stay up-to-date on AV protection and avoid all suspicious Word documents found in email.

Symantec - MDropper.Q Trojan Description

Microsoft Word 2000 Document Handling Client-Side Command Execution Vulnerability
http://www.frsirt.com/english/advisories/2006/3448

QUOTE: A vulnerability has been identified in Microsoft Word 2000, which could be exploited by attackers to take complete control of an affected system. This flaw is due to a memory corruption error when handling a malformed document, which could be exploited by attackers to execute arbitrary commands by tricking a user into opening a specially crafted Word document.  This zero-day vulnerability is currently being exploited in the wild by Trojan.Mdropper.Q.


Microsoft Word 2000 Unspecified Code Execution Vulnerability
http://secunia.com/advisories/21735/

Secunia Advisory:  SA21735    
Release Date:  2006-09-05 
 
Rating: Extremely critical 
Impact:  System access
Where:  From remote
Solution Status:  Unpatched 
Software: Microsoft Office 2000, Word 2000
Exploits: The vulnerability is being actively exploited.
Discovered by: Discovered in the wild as a 0-day.

A vulnerability has been reported in Microsoft Word 2000, which can be exploited by malicious people to compromise a user's system.