Lucene search

K
cveMicrosoftCVE-2013-3890
HistoryOct 09, 2013 - 2:53 p.m.

CVE-2013-3890

2013-10-0914:53:25
CWE-119
microsoft
web.nvd.nist.gov
41
cve-2013-3890
microsoft excel
excel 2007
excel viewer
office compatibility pack
memory corruption
vulnerability
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.846

Percentile

98.6%

Microsoft Excel 2007 SP3, Excel Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka “Microsoft Excel Memory Corruption Vulnerability.”

Affected configurations

Nvd
Node
microsoftexcelMatch2007sp3
OR
microsoftexcel_viewer
OR
microsoftoffice_compatibility_packsp3
VendorProductVersionCPE
microsoftexcel2007cpe:2.3:a:microsoft:excel:2007:sp3:*:*:*:*:*:*
microsoftexcel_viewer*cpe:2.3:a:microsoft:excel_viewer:*:*:*:*:*:*:*:*
microsoftoffice_compatibility_pack*cpe:2.3:a:microsoft:office_compatibility_pack:*:sp3:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.846

Percentile

98.6%