mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 02:31:38 +00:00
771 B
771 B
CVE-2012-1661
Description
ESRI ArcMap 9 and ArcGIS 10.0.2.3200 and earlier does not properly prompt users before executing embedded VBA macros, which allows user-assisted remote attackers to execute arbitrary VBA code via a crafted map (.mxd) file.
POC
Reference
- http://packetstormsecurity.org/files/113644/ESRI-ArcMap-Arbitrary-Code-Execution.html
- http://www.exploit-db.com/exploits/19138
Github
No PoCs found on GitHub currently.