ESRI ArcMap code execution
SecurityVulns ID:12424
Threat Level:
Description:MXD files may contain VBS scripts.
Affected:ESRI : ArcMap 9
 ESRI : ArcGIS Desktop 10
CVE:CVE-2012-1661 (ESRI ArcMap 9 and ArcGIS and earlier does not properly prompt users before executing embedded VBA macros, which allows user-assisted remote attackers to execute arbitrary VBA code via a crafted map (.mxd) file.)
Original documentdocumentBoston Cyber Defense, CVE-2012-1661 - ESRI ArcMap arbitrary code execution via crafted map file. (17.06.2012)

