Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

SMB:VISIO-MFC71XXX-DLL-HIJACK

Severity

Minor

Recommended

No

Recommended Action

Drop

Category

SMB

Keywords

Microsoft Visio Insecure MFC71xxx.DLL Library Loading

Release Date

2011/07/21

Update Number

1959

Supported Platforms

idp-4.1.110110609+, isg-3.4.139899+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

SMB: Microsoft Visio Insecure MFC71xxx.DLL Library Loading


This signature detects attempts to exploit a known vulnerability in Microsoft Office Visio 11. It is due to a design weakness in loading Dynamically Linked Libraries. Remote attackers can exploit this by enticing target users to download a malicious dll file from an SMB share. A successful attack can result in loading the attacker-controlled library and execution of arbitrary code with the privileges of the logged-in user. If a user is logged-on with administrative user rights, an attacker can take complete control of the affected system.

Extended Description

Microsoft Visio 2003 is prone to a vulnerability that lets attackers execute arbitrary code. An attacker can exploit this issue by enticing a legitimate user to use the vulnerable application to open a file from a network share location that contains a specially crafted Dynamic Link Library (DLL) file. Microsoft Visio 2003 is vulnerable; other versions may also be affected.

Affected Products

  • Microsoft visio_2003 SP1
  • Microsoft visio_2003 SP2
  • Microsoft visio_2003 SP3
  • Microsoft visio_2003
  • Microsoft visio_2003_professional
  • Microsoft visio_2003_standard

References

  • BugTraq: 42681
  • CVE: CVE-2010-3148

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out