Lucene search

K
cve[email protected]CVE-2010-3221
HistoryOct 13, 2010 - 7:00 p.m.

CVE-2010-3221

2010-10-1319:00:44
CWE-94
web.nvd.nist.gov
27
cve-2010-3221
microsoft word
word viewer
office 2004 for mac
parsing vulnerability
memory corruption
remote code execution

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

Low

0.883 High

EPSS

Percentile

98.7%

Microsoft Word 2002 SP3 and 2003 SP3, Office 2004 for Mac, and Word Viewer do not properly handle a malformed record during parsing of a Word document, which allows remote attackers to execute arbitrary code via a crafted document that triggers memory corruption, aka β€œWord Parsing Vulnerability.”

Affected configurations

NVD
Node
microsoftofficeMatch2004mac
OR
microsoftwordMatch2002sp3
OR
microsoftwordMatch2003sp3
OR
microsoftword_viewer

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

Low

0.883 High

EPSS

Percentile

98.7%