Security Portal

Intrusion Prevention Service

Signature Version: 4.948


FILE Microsoft Excel Embedded Shockwave Flash Object Code Execution (CVE-2006-3014)
Threat Level: High
Release Date: 2010/12/1
Category: Access Control
Signature ID: 1112749
Included In:
Affected OS: Windows
Description: A vulnerability exists in the Shockwave Flash object when embedded in Microsoft Excel. The flaw allows script code to be automatically executed by a Shockwave Flash Object contained within an XLS document.
Impact: Remote code execution
Recommendation: Update vendor's patch.
False Positive: None
False Negative: None
Additional Information (Links open in new window):
Reference(s): BID:18583; CVE-2006-3014; SA22882

Search the Threat Database
Enter Rule ID or Name