Welcome to the Virus Encyclopedia of Panda Security.
|Alias:||Vulnerability in Microsoft Office XP|
It is a vulnerability in certain programs, such as Office XP, Project 2002 and Visio 2002, which allows hackers to gain remote control of the affected computer with the same privileges as the logged-on user.
|First detected on:||Feb. 9, 2005|
|Detection updated on:||Feb. 9, 2005|
MS05-005 is not categorized as virus, worm, Trojan or backdoor. It is a critical vulnerability in the following programs:
- Office XP.
- Project 2002.
- Visio 2002.
- Works Suite.
These programs present a buffer overrun vulnerability, which if exploited successfully, allows hackers to gain remote control of the affected computer with the same privileges as the logged-on user. If this user had administrator rights, the hacker could take complete control of the system: create, modify or delete files, install programs, create new user accounts, etc.
MS05-005 is exploited by crafting a link that references a malicious code. This link is then massively sent to users in an e-mail message that attempts to entice them into accessing it. This vulnerability can also be exploited by hosting the malicious code in a website, and persuading users to access it.
If you have any of the vulnerable programs installed on your computer, it is recommendable to download and apply the security patch for this vulnerability. Click here to access the web page for downloading the patch.