| Vigil@nce team describes computer vulnerabilities impacting your systems, and offers solutions to correct them. |
|
 |
|
|
|
vulnerability alert CVE-2010-0027
Windows, IE: command execution via an url
Synthesis of the vulnerability
| An attacker can invite the victim to click on a url, in order to execute a program located on his computer. |
Severity: 4/4.
Creation date: 10/02/2010.
|
Description of the vulnerability
| The Shlwapi.dll (Shell Light Weight Utility) library manages the ShellExecute() ... |
Complete Vigil@nce bulletin
Characteristics
Title: Windows, IE: command execution via an url.
Keywords: Light Shell ShellExecute Shlwapi Utility Weight Windows command execution.
Identifiers: 975713, 978207, CVE-2010-0027, ISVA-100216.1, MS10-002, MS10-007, VIGILANCE-VUL-9426, ZDI-10-016.
Pointed by: VIGILANCE-VUL-9375.
|
Computer vulnerabilities tracking service
The Vigil@nce computer vulnerability tracking service alerts your teams of vulnerabilities or threats impacting your information system.
The Vigil@nce vulnerability database contains several thousand vulnerabilities.
This bulletin is published by the Vigil@nce team, which tracks computer vulnerabilities impacting systems and applications.
Computer vulnerability bulletins
|