Lucene search

K
cveFlexeraCVE-2009-0202
HistoryJun 11, 2009 - 9:30 p.m.

CVE-2009-0202

2009-06-1121:30:00
CWE-94
flexera
web.nvd.nist.gov
26
cve-2009-0202
fl21win.dll
powerpoint
freelance windows 2.1 translator
remote code execution
heap-based buffer overflow

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.158

Percentile

96.0%

Array index error in FL21WIN.DLL in the PowerPoint Freelance Windows 2.1 Translator in Microsoft PowerPoint 2000 and 2002 allows remote attackers to execute arbitrary code via a Freelance file with unspecified β€œlayout information” that triggers a heap-based buffer overflow.

Affected configurations

Nvd
Node
microsoftoffice_powerpointMatch2000
OR
microsoftoffice_powerpointMatch2002
VendorProductVersionCPE
microsoftoffice_powerpoint2000cpe:2.3:a:microsoft:office_powerpoint:2000:*:*:*:*:*:*:*
microsoftoffice_powerpoint2002cpe:2.3:a:microsoft:office_powerpoint:2002:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.158

Percentile

96.0%