Lucene search

K
cve[email protected]CVE-2007-0065
HistoryFeb 12, 2008 - 11:00 p.m.

CVE-2007-0065

2008-02-1223:00:00
CWE-94
web.nvd.nist.gov
35
cve-2007-0065
buffer overflow
ole automation
microsoft windows
office
remote code execution

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

Low

0.6 Medium

EPSS

Percentile

97.8%

Heap-based buffer overflow in Object Linking and Embedding (OLE) Automation in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, Office 2004 for Mac, and Visual basic 6.0 SP6 allows remote attackers to execute arbitrary code via a crafted script request.

Affected configurations

NVD
Node
microsoftwindows_2000sp4
OR
microsoftwindows_2003_serverMatchsp1
OR
microsoftwindows_2003_serverMatchsp2
OR
microsoftwindows_vista
OR
microsoftwindows_xpsp2
AND
microsoftofficemac\+os
OR
microsoftvisual_basicMatch6.0sp6

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

Low

0.6 Medium

EPSS

Percentile

97.8%