Lucene search

K
cve[email protected]CVE-2007-3890
HistoryAug 14, 2007 - 9:17 p.m.

CVE-2007-3890

2007-08-1421:17:00
web.nvd.nist.gov
32
microsoft
excel
memory corruption
vulnerability
cve-2007-3890
nvd
office 2000
office xp
office 2003
office 2004
remote code execution

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.363 Low

EPSS

Percentile

97.2%

Microsoft Excel in Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute arbitrary code via a Workspace with a certain index value that triggers memory corruption.

Affected configurations

NVD
Node
microsoftexcelMatch2000sp3
OR
microsoftexcelMatch2003sp2
OR
microsoftexcelMatch2004mac
OR
microsoftexcelMatchxp_sp3
OR
microsoftofficeMatch2000sp3
OR
microsoftofficeMatch2003sp2
OR
microsoftofficeMatch2004mac
OR
microsoftofficeMatchxpsp3

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.363 Low

EPSS

Percentile

97.2%