RULE(RULE ID:1905056)

Rule General Information
Release Date: 2017-08-24
Rule Name: FILE-OFFICE Microsoft Office Groove Insecure Library Loading Vulnerability -2 (CVE-2010-3146)
Severity:
CVE ID:
Rule Protection Details
Description: Multiple untrusted search path vulnerabilities in Microsoft Groove 2007 SP2 allow local users to gain privileges via a Trojan horse (1) mso.dll or (2) GroovePerfmon.dll file in the current working directory, aka "Microsoft Groove Insecure Library Loading Vulnerability."
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows
Reference: ExploitDB:14746
http://www.microsoft.com/technet/security/Bulletin/MS11-016.mspx
Solutions
Microsoft has released a patch MS11-016 to eliminate the vulnerability. The patch can be downloaded at http://www.microsoft.com/technet/security/Bulletin/MS11-016.mspx