vendor:
Microsoft Office
by:
Jean Pascal Pereira
7,5
CVSS
HIGH
Remote Denial-of-Service Vulnerability
399
CWE
Product Name: Microsoft Office
Affected Version From: Microsoft Office 2007
Affected Version To: Microsoft Office 2010
Patch Exists: YES
Related CWE: N/A
CPE: a:microsoft:office
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2011
Microsoft Office Excel ReadAV Arbitrary Code Execution
Attackers can exploit this issue to crash the affected application. Due to the nature of the issue code execution might be possible, but it has not been confirmed.
Mitigation:
Update to the latest version of Microsoft Office to mitigate this vulnerability.