Lucene search

K
cveMicrosoftCVE-2010-0031
HistoryFeb 10, 2010 - 6:30 p.m.

CVE-2010-0031

2010-02-1018:30:01
CWE-94
microsoft
web.nvd.nist.gov
49
cve-2010-0031
microsoft office
powerpoint
remote code execution
crafted document
security vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.629

Percentile

97.9%

Array index error in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3, and PowerPoint in Office 2004 for Mac, allows remote attackers to execute arbitrary code via a crafted PowerPoint document, aka “PowerPoint OEPlaceholderAtom ‘placementId’ Invalid Array Indexing Vulnerability.”

Affected configurations

Nvd
Node
microsoftofficeMatch2004mac
Node
microsoftpowerpointMatch2002sp3
OR
microsoftpowerpointMatch2003sp3
VendorProductVersionCPE
microsoftoffice2004cpe:2.3:a:microsoft:office:2004:*:mac:*:*:*:*:*
microsoftpowerpoint2002cpe:2.3:a:microsoft:powerpoint:2002:sp3:*:*:*:*:*:*
microsoftpowerpoint2003cpe:2.3:a:microsoft:powerpoint:2003:sp3:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.629

Percentile

97.9%