vendor:
Windows
by:
Unknown
N/A
CVSS
HIGH
Arbitrary Code Execution
94
CWE
Product Name: Windows
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows
Unknown
Arbitrary Code Execution via Windows Help Files
The help files for the Windows Help system (*.cnt, *.hlp) can be edited so that they run an arbitrary executable when selected by a user. The executable will run at the privilege level of the user. The *.cnt files are like tables of contents that tell the help system what to open when each topic is selected. These entries can be edited to cause system and DLL calls and programs to be executed when a topic is chosen. The help files themselves, *.hlp, can be edited in a similar manner.
Mitigation:
Delete the vulnerable help files or restrict access to them. Keep the system and software up to date with the latest patches and security updates.