Lucene search

K
cveMitreCVE-2001-0240
HistorySep 18, 2001 - 4:00 a.m.

CVE-2001-0240

2001-09-1804:00:00
mitre
web.nvd.nist.gov
31
microsoft word
word 2002
attackers
execute macros
rtf document
user alert

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

20.3%

Microsoft Word before Word 2002 allows attackers to automatically execute macros without warning the user via a Rich Text Format (RTF) document that links to a template with the embedded macro.

Affected configurations

Nvd
Node
microsoftwordMatch97
OR
microsoftwordMatch98mac_os_x
OR
microsoftwordMatch98ja
OR
microsoftwordMatch2000
OR
microsoftwordMatch2001mac_os_x
VendorProductVersionCPE
microsoftword97cpe:2.3:a:microsoft:word:97:*:*:*:*:*:*:*
microsoftword98cpe:2.3:a:microsoft:word:98:*:*:*:*:mac_os_x:*:*
microsoftword98cpe:2.3:a:microsoft:word:98:*:*:ja:*:*:*:*
microsoftword2000cpe:2.3:a:microsoft:word:2000:*:*:*:*:*:*:*
microsoftword2001cpe:2.3:a:microsoft:word:2001:*:*:*:*:mac_os_x:*:*

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

6.6

Confidence

High

EPSS

0.001

Percentile

20.3%

Related for CVE-2001-0240