Lucene search

K
cve[email protected]CVE-2009-0549
HistoryJun 10, 2009 - 6:30 p.m.

CVE-2009-0549

2009-06-1018:30:00
CWE-94
web.nvd.nist.gov
24
cve-2009-0549
excel
microsoft office
remote code execution
vulnerability
nvd
record pointer corruption

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

Low

0.817 High

EPSS

Percentile

98.4%

Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; and Microsoft Office Excel Viewer 2003 SP3 allow remote attackers to execute arbitrary code via a crafted Excel file with a malformed record object, aka β€œRecord Pointer Corruption Vulnerability.”

Affected configurations

NVD
Node
microsoftofficeMatch2004mac
OR
microsoftofficeMatch2008mac
OR
microsoftofficeMatchxpsp3
OR
microsoftoffice_compatibility_pack_for_word_excel_ppt_2007sp1
OR
microsoftoffice_compatibility_pack_for_word_excel_ppt_2007sp2
OR
microsoftoffice_excelMatch2000sp3
OR
microsoftoffice_excelMatch2003sp3
OR
microsoftoffice_excelMatch2007sp1
OR
microsoftoffice_excelMatch2007sp2
OR
microsoftoffice_excel_viewer
OR
microsoftoffice_excel_viewerMatch2003sp3
OR
microsoftoffice_sharepoint_serverMatch2007sp1x32
OR
microsoftoffice_sharepoint_serverMatch2007sp1x64
OR
microsoftoffice_sharepoint_serverMatch2007sp2x32
OR
microsoftoffice_sharepoint_serverMatch2007sp2x64
OR
microsoftopen_xml_file_format_convertermac

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

Low

0.817 High

EPSS

Percentile

98.4%