Lucene search

K
cve[email protected]CVE-2009-1533
HistoryJun 10, 2009 - 6:00 p.m.

CVE-2009-1533

2009-06-1018:00:00
CWE-119
web.nvd.nist.gov
32
cve-2009-1533
buffer overflow
works for windows
microsoft office
remote code execution
memory corruption
vulnerability

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

Low

0.864 High

EPSS

Percentile

98.6%

Buffer overflow in the Works for Windows document converters in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, Office 2007 SP1, and Works 8.5 and 9 allows remote attackers to execute arbitrary code via a crafted Works .wps file that triggers memory corruption, aka β€œFile Converter Buffer Overflow Vulnerability.”

Affected configurations

NVD
Node
microsoftofficeMatch2000sp3
OR
microsoftofficeMatch2003sp3
OR
microsoftoffice_xpMatchsp3
OR
microsoftworksMatch8.5
OR
microsoftworksMatch9.0

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

Low

0.864 High

EPSS

Percentile

98.6%