Lucene search

K
cve[email protected]CVE-2003-0347
HistoryOct 20, 2003 - 4:00 a.m.

CVE-2003-0347

2003-10-2004:00:00
web.nvd.nist.gov
33
cve-2003-0347
buffer overflow
vbe.dll
vbe6.dll
microsoft visual basic for applications
vba sdk 5.0
vba sdk 6.3
remote code execution

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

8 High

AI Score

Confidence

High

0.943 High

EPSS

Percentile

99.2%

Heap-based buffer overflow in VBE.DLL and VBE6.DLL of Microsoft Visual Basic for Applications (VBA) SDK 5.0 through 6.3 allows remote attackers to execute arbitrary code via a document with a long ID parameter.

Affected configurations

NVD
Node
microsoftofficeMatch2000
OR
microsoftofficeMatch2000sp2
OR
microsoftofficeMatch2000sp3
OR
microsoftofficeMatchxp
OR
microsoftofficeMatchxpsp1
OR
microsoftofficeMatchxpsp2
OR
microsoftprojectMatch2000
OR
microsoftprojectMatch2002
OR
microsoftvisioMatch2002professional
OR
microsoftvisual_basicMatch5.0sdk
OR
microsoftvisual_basicMatch6.2
OR
microsoftvisual_basicMatch6.2sdk
OR
microsoftvisual_basicMatch6.3sdk

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

8 High

AI Score

Confidence

High

0.943 High

EPSS

Percentile

99.2%

Related for CVE-2003-0347