Summary
This host is missing an important security update according to Microsoft Bulletin MS12-051.
Impact
Successful exploitation could allow attackers to execute arbitrary code in the security context of the current user.
Impact Level: System/Application
Solution
Run Windows Update and update the listed hotfixes or download and update mentioned hotfixes in the advisory from the below link, http://technet.microsoft.com/en-us/security/bulletin/ms12-051
Insight
The application being installed with insecure folder permissions and can be exploited to create arbitrary files in certain directories.
Affected
Microsoft Office 2011 for Mac
References
Severity
Classification
-
CVE CVE-2012-1894 -
CVSS Base Score: 6.9
AV:L/AC:M/Au:N/C:C/I:C/A:C
Related Vulnerabilities
- Apple Mac OS X PackageKit Format String Vulnerability
- MS Office Outlook Information Disclosure Vulnerability - 2813682 (Mac OS X)
- Microsoft Office Privilege Elevation Vulnerability - 2721015 (Mac OS X)
- Microsoft Silverlight Information Disclosure Vulnerability-2890788 (Mac OS X)
- Mac OS X Certificate Trust Policy Information Disclosure Vulnerability (2011-005)