HTTP: Windows WebView Word Doc Script Injection
This signature detects attempts to exploit a known vulnerability against Microsoft Word metadata files. An attacker can use improper characters in a Word document metadata. If a user selects the malicious document from a directory over HTTP, it can allow the attacker to run scripts on the user's computer. Note: The file does not need to be opened for the script to run.
Extended Description
When exploited, this vulnerability allows the attacker to execute arbitrary code on the vulnerable system.
References
CVE: CVE-2005-0557
URL: http://www.juniper.net/security/auto/vulnerabilities/vuln1812.html
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3