## https://sploitus.com/exploit?id=SAINT:28BFAA514453FD2A4DAC4FB812E86FF3
Added: 02/22/2008
CVE: [CVE-2008-0105](<https://vulners.com/cve/CVE-2008-0105>)
BID: [27658](<http://www.securityfocus.com/bid/27658>)
OSVDB: [41458](<http://www.osvdb.org/41458>)
### Background
The Microsoft Works File Converter allows [Microsoft Office](<http://office.microsoft.com>) to open [Microsoft Works](<http://www.microsoft.com/products/works>) files.
### Problem
A buffer overflow vulnerability in the Microsoft Works File Converter allows arbitrary command execution when a user opens a `**.wps**` file with a specially crafted index table.
### Resolution
Apply the update referenced in [Microsoft Security Bulletin 08-011](<http://www.microsoft.com/technet/security/bulletin/ms08-011.mspx>).
### References
<http://www.microsoft.com/technet/security/bulletin/ms08-011.mspx>
### Limitations
Exploit works on Microsoft Word 2003 SP3 and requires a user to open the exploit file.
### Platforms
Windows