Security Advisory
CVE-2014-2815
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Microsoft OneNote 2007 SP3 allows remote attackers to execute arbitrary code via a crafted OneNote file that triggers creation of an executable file in a startup folder, aka "OneNote Remote Code Execution Vulnerability."