vendor:
Office
by:
w3bd3vil
9.3
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Office
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: MS11-021/CVE-2011-0978
CPE: a:microsoft:office
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2011
Microsoft Office Excel Axis Properties Record Parsing Buffer Overflow
This is a PoC for MS11-021/CVE-2011-0978. It modifies bits at file location 0x39E7 and eax points to location in the file 0xFB4. The data at this location is 00630009 0061006c 00730065 006d0065 006e0074 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c 006f0063 0061006c.
Mitigation:
Microsoft released a patch for this vulnerability.