vendor:
Microsoft Office PowerPoint 2007
by:
storm
7.5
CVSS
HIGH
DLL Hijacking
DLL Injection
CWE
Product Name: Microsoft Office PowerPoint 2007
Affected Version From: 2007 (12.0.6535.5002) SP2
Affected Version To: 2007 (12.0.6535.5002) SP2
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows Vista SP2
2010
Microsoft Office PowerPoint 2007 DLL Hijacking Exploit (rpawinet.dll)
This exploit allows an attacker to hijack the DLL in Microsoft Office PowerPoint 2007, specifically the rpawinet.dll. By executing a malicious PowerPoint file (.odp, .pothtml, .potm, .potx, .ppa, .ppam, .pps, .ppt, .ppthtml, .pptm, .pptxml, .pwz, .sldm, .sldx, and .thmx files), the attacker can execute arbitrary code, in this case, launching the calculator.
Mitigation:
To mitigate this vulnerability, it is recommended to update to a patched version of Microsoft Office PowerPoint 2007 or apply the necessary security patches. It is also advised to exercise caution when opening PowerPoint files from untrusted sources.