This application requires Javascript for optimal performance.

MS.Visio.Insecure.MFC.Dll.Loading

Release Date

Jul 13, 2011

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against an Insecure DLL Loading Path vulnerability in Microsoft Visio.

The vulnerability occurs when Microsoft Visio 2003 uses the insecure Windows DLL load order to load certain libraries. It could be exploited by remote attackers to execute arbitrary code.

Affected Products

Microsoft Visio 2003 SP3.

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://www.microsoft.com/technet/security/Bulletin/ms11-055.mspx

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2010-3148

Reference/s

http://technet.microsoft.com/en-us/security/bulletin/ms11-055.mspx (MS-ID)

Reference: VID-28203