Home / malwarePDF  

Exploit:HTML/MS06014


First posted on 15 February 2019.
Source: Microsoft

Aliases :

Exploit:HTML/MS06014 is also known as VBS/Psyme.AK, Trojan.Downloader.VBS.CN.

Explanation :

Exploit:HTML/MS06014 is a generic detection for a malicious script that attempts to exploit a vulnerability in Microsoft Data Access Components and Remote Data Service (RDS). A remote code execution vulnerability (CVE-2006-0003) exists in the RDS.Dataspace ActiveX control  with the following CLSID:  {BD96C556-65A3-11D0-983A-00C04FC29E36}.   This exploit code may be found in specially-crafted webpages that attempt to download and execute arbitrary files (including malware) when viewed with Microsoft Internet Explorer. For more information on this vulnerability, and for appropriate remediation, please see Microsoft Security Bulletin MS06-014.  Analysis by Jireh Sanico

Last update 15 February 2019

 

TOP