Lucene search

K
cve[email protected]CVE-2010-3241
HistoryOct 13, 2010 - 7:00 p.m.

CVE-2010-3241

2010-10-1319:00:46
CWE-20
web.nvd.nist.gov
25
cve-2010-3241
microsoft excel
office for mac
open xml file format converter
out-of-bounds memory write
parsing vulnerability
arbitrary code execution

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.6 High

AI Score

Confidence

Low

0.731 High

EPSS

Percentile

98.1%

Microsoft Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly validate binary file-format information, which allows remote attackers to execute arbitrary code via a crafted Excel document, aka “Out-of-Bounds Memory Write in Parsing Vulnerability.”

Affected configurations

NVD
Node
microsoftexcelMatch2002sp3
OR
microsoftofficeMatch2004mac
OR
microsoftofficeMatch2008mac
OR
microsoftopen_xml_file_format_convertermac

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.6 High

AI Score

Confidence

Low

0.731 High

EPSS

Percentile

98.1%