Lucene search

K
cve[email protected]CVE-2012-1894
HistoryJul 10, 2012 - 9:55 p.m.

CVE-2012-1894

2012-07-1021:55:06
CWE-264
web.nvd.nist.gov
27
microsoft
office
mac
2011
vulnerability
privilege escalation
exploit
security

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

29.0%

Microsoft Office for Mac 2011 uses world-writable permissions for the โ€œApplications/Microsoft Office 2011/โ€ directory and certain other directories, which allows local users to gain privileges by placing a Trojan horse executable file in one of these directories, aka โ€œOffice for Mac Improper Folder Permissions Vulnerability.โ€

Affected configurations

NVD
Node
microsoftofficeMatch2011mac
CPENameOperatorVersion
microsoft:officemicrosoft officeeq2011

6.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

29.0%