{"id":8598,"date":"2014-03-26T17:05:15","date_gmt":"2014-03-26T21:05:15","guid":{"rendered":"http:\/\/mjtsai.com\/blog\/?p=8598"},"modified":"2014-03-26T17:05:15","modified_gmt":"2014-03-26T21:05:15","slug":"microsoft-word-rtf-security-flaw","status":"publish","type":"post","link":"https:\/\/mjtsai.com\/blog\/2014\/03\/26\/microsoft-word-rtf-security-flaw\/","title":{"rendered":"Microsoft Word RTF Security Flaw"},"content":{"rendered":"<p><a href=\"http:\/\/www.theregister.co.uk\/2014\/03\/24\/microsoft_rtf_vuln\">Jack Clark<\/a>:<\/p>\n<blockquote cite=\"http:\/\/www.theregister.co.uk\/2014\/03\/24\/microsoft_rtf_vuln\"><p>Opening a poisoned Rich Text File (RTF) document allows the attacker to hijack the PC with the same privileges as the logged-in user.<\/p>\n<p>[&#8230;]<\/p>\n<p>Microsoft Word 2003, 2007, 2010, 2013, and Office for Mac 2011 are vulnerable, according to Redmond. Microsoft Office Web Apps, Automation Services on SharePoint Server 2010 and 20103, and Outlook 2007, 2010 and 2013 when using Word as the email viewer, are also affected.<\/p><\/blockquote>","protected":false},"excerpt":{"rendered":"<p>Jack Clark: Opening a poisoned Rich Text File (RTF) document allows the attacker to hijack the PC with the same privileges as the logged-in user. [&#8230;] Microsoft Word 2003, 2007, 2010, 2013, and Office for Mac 2011 are vulnerable, according to Redmond. Microsoft Office Web Apps, Automation Services on SharePoint Server 2010 and 20103, and [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"apple_news_api_created_at":"","apple_news_api_id":"","apple_news_api_modified_at":"","apple_news_api_revision":"","apple_news_api_share_url":"","apple_news_coverimage":0,"apple_news_coverimage_caption":"","apple_news_is_hidden":false,"apple_news_is_paid":false,"apple_news_is_preview":false,"apple_news_is_sponsored":false,"apple_news_maturity_rating":"","apple_news_metadata":"\"\"","apple_news_pullquote":"","apple_news_pullquote_position":"","apple_news_slug":"","apple_news_sections":"\"\"","apple_news_suppress_video_url":false,"apple_news_use_image_component":false,"footnotes":""},"categories":[2],"tags":[131,30,32,37,445,820,48,219,807],"class_list":["post-8598","post","type-post","status-publish","format-standard","hentry","category-technology","tag-bug","tag-mac","tag-macapp","tag-microsoft","tag-microsoftword","tag-rich-text-format-rtf","tag-security","tag-windows","tag-windows-app"],"apple_news_notices":[],"_links":{"self":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/8598","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/comments?post=8598"}],"version-history":[{"count":0,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/posts\/8598\/revisions"}],"wp:attachment":[{"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/media?parent=8598"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/categories?post=8598"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mjtsai.com\/blog\/wp-json\/wp\/v2\/tags?post=8598"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}