Encyclopedia

Panda Internet Security 2010

Panda Internet Security 2010

Full protectión for complete peace of mind on the Internet.

* Includes 3 months' services FREE

MS09-027

 
Threat LevelLow threatDamageHighDistributionNot widespread
Common name:MS09-027
Technical name:MS09-027
Threat level:Medium
Alias:Vulnerabilities in Microsoft Office Word Could Allow Remote Code Execution
Type:Vulnerability
Effects:  

It is a critical vulnerability in certain versions of Word, which allows hackers to gain remote control of the affected computer with the same privileges as the logged-on user.

Affected platforms:

Other

First detected on:June 10, 2009
Detection updated on:June 11, 2009
StatisticsNo

Brief Description 

    

MS09-027 is not categorized as virus, worm, Trojan or backdoor. It is a critical vulnerability in certain versions of Word, which allows arbitrary code to be remotely executed in the vulnerable computer.

The affected versions are:

  • Word 2000 on Office 2000, Word 2002 on Office XP, Word 2003 on Office 2003, Word 2007 on Office 2007.
  • Office Viewer 2003 and Office Word Viewer.
  • Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats.
  • Office 2004 and Office 2008 for Mac.
  • Open XML File Format Converter for Mac.

 

If exploited successfully, MS09-027 allows hackers to gain remote control of the affected computer with the same privileges as the logged-on user. If this user had administrator rights, the hacker could take complete control of the system: create, modify or delete files, install programs, create new user accounts, etc.

MS09-027 is exploited by creating a specially crafted Word file and sending it via email or hosting it in a website and convincing users to open it.

 

If you have any of the vulnerable programs installed on your computer, it is recommended to download and apply the security patch for this vulnerability. Click here to access the web page for downloading the patch.

Last updated:  11/06/2009 

Virus News

Help your friends against viruses: share, save and subscribe to our security content. Thank you.

Share/Bookmark

Fake virus alert spreads massively across Facebook, reports PandaLabs

Panda Security, leading Spanish software vendor in the 2009 Truffle 100 Europe i...

PandaLabs Annual Malware Report: 2009 sets new records for malware creation: 25 ...

[+ Noticias]