Vulnerabilities > CVE-2006-0187 - Remote Code Execution vulnerability in Microsoft Visual Studio .Net 2005

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
microsoft
exploit available

Summary

By design, Microsoft Visual Studio 2005 automatically executes code in the Load event of a user-defined control (UserControl1_Load function), which allows user-assisted attackers to execute arbitrary code by tricking the user into opening a malicious Visual Studio project file.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1

Exploit-Db

  • descriptionMicrosoft Visual Studio UserControl Remote Code Execution Vulnerability (2). CVE-2006-0187. Remote exploit for windows platform
    idEDB-ID:27073
    last seen2016-02-03
    modified2006-01-12
    published2006-01-12
    reporterpriestmaster
    sourcehttps://www.exploit-db.com/download/27073/
    titleMicrosoft Visual Studio UserControl Remote Code Execution Vulnerability 2
  • descriptionMicrosoft Visual Studio UserControl Remote Code Execution Vulnerability (1). CVE-2006-0187. Remote exploit for windows platform
    idEDB-ID:27072
    last seen2016-02-03
    modified2006-01-12
    published2006-01-12
    reporteranonymous
    sourcehttps://www.exploit-db.com/download/27072/
    titleMicrosoft Visual Studio UserControl Remote Code Execution Vulnerability 1