PT-2006-5476 · Microsoft · Packager.Exe+2
Andreas Sandblad
·
Publicado
2006-10-10
·
Atualizado
2024-02-13
·
CVE-2006-4692
CVSS v2.0
5.1
Média
| Vetor | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows versions prior to XP SP3 and Server 2003 SP2
Description
The issue allows remote user-assisted attackers to execute arbitrary commands via a crafted file with a "/" character in the filename of the Command Line property, followed by a valid file extension. This could cause the command before the slash to be executed. A remote code execution vulnerability exists due to the way file extensions are handled, potentially allowing an attacker to take complete control of an affected system if a user visits a specially crafted Web site. Significant user interaction is required to exploit this vulnerability.
Recommendations
For Microsoft Windows XP SP1 and SP2, and Server 2003 SP1 and earlier, update to a newer version to mitigate the risk.
As a temporary workaround, consider restricting the use of the packager.exe until a patch is available.
Avoid using the Command Line property with filenames containing a "/" character followed by a valid file extension in the Windows Object Packager until the issue is resolved.
Correção
RCE
Argument Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Windows
Windows Object Packager
Packager.Exe