Lucene search

K
cveMicrosoftCVE-2007-3030
HistoryJul 10, 2007 - 10:30 p.m.

CVE-2007-3030

2007-07-1022:30:00
microsoft
web.nvd.nist.gov
33
microsoft
excel
remote code execution
vulnerability
cve-2007-3030
memory corruption

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.736

Percentile

98.1%

Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, and 2003 Viewer allows user-assisted remote attackers to execute arbitrary code via a malformed Excel file involving the โ€œdenoting [of] the start of a Workspace designationโ€, which results in memory corruption, aka the โ€œWorkbook Memory Corruption Vulnerabilityโ€.

Affected configurations

Nvd
Node
microsoftexcelMatch2000sp3
OR
microsoftexcelMatch2002sp3
OR
microsoftexcelMatch2003sp2
OR
microsoftexcelMatch2004mac
OR
microsoftexcelMatch2007
OR
microsoftexcel_viewerMatch2003
VendorProductVersionCPE
microsoftexcel2000cpe:2.3:a:microsoft:excel:2000:sp3:*:*:*:*:*:*
microsoftexcel2002cpe:2.3:a:microsoft:excel:2002:sp3:*:*:*:*:*:*
microsoftexcel2003cpe:2.3:a:microsoft:excel:2003:sp2:*:*:*:*:*:*
microsoftexcel2004cpe:2.3:a:microsoft:excel:2004:*:mac:*:*:*:*:*
microsoftexcel2007cpe:2.3:a:microsoft:excel:2007:*:*:*:*:*:*:*
microsoftexcel_viewer2003cpe:2.3:a:microsoft:excel_viewer:2003:*:*:*:*:*:*:*

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.736

Percentile

98.1%