Lucene search

K
nvd[email protected]NVD:CVE-2009-0087
HistoryApr 15, 2009 - 8:00 a.m.

CVE-2009-0087

2009-04-1508:00:00
web.nvd.nist.gov
5

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.677

Percentile

98.0%

Unspecified vulnerability in the Word 6 text converter in WordPad in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and the Word 6 text converter in Microsoft Office Word 2000 SP3 and 2002 SP3; allows remote attackers to execute arbitrary code via a crafted Word 6 file that contains malformed data, aka β€œWordPad and Office Text Converter Memory Corruption Vulnerability.”

Affected configurations

Nvd
Node
microsoftoffice_wordMatch2000sp3
OR
microsoftoffice_wordMatch2002sp3
Node
microsoftwindows_2000Match-sp4
OR
microsoftwindows_2003_serverx64
OR
microsoftwindows_2003_serversp1
OR
microsoftwindows_2003_serversp1itanium
OR
microsoftwindows_2003_serversp2
OR
microsoftwindows_2003_serversp2itanium
OR
microsoftwindows_2003_serversp2x64
OR
microsoftwindows_xpx64
OR
microsoftwindows_xpsp2
OR
microsoftwindows_xpsp2x64
OR
microsoftwindows_xpsp3
VendorProductVersionCPE
microsoftoffice_word2000cpe:2.3:a:microsoft:office_word:2000:sp3:*:*:*:*:*:*
microsoftoffice_word2002cpe:2.3:a:microsoft:office_word:2002:sp3:*:*:*:*:*:*
microsoftwindows_2000-cpe:2.3:o:microsoft:windows_2000:-:sp4:*:*:*:*:*:*
microsoftwindows_2003_server*cpe:2.3:o:microsoft:windows_2003_server:*:*:*:*:*:*:x64:*
microsoftwindows_2003_server*cpe:2.3:o:microsoft:windows_2003_server:*:sp1:*:*:*:*:*:*
microsoftwindows_2003_server*cpe:2.3:o:microsoft:windows_2003_server:*:sp1:*:*:*:*:itanium:*
microsoftwindows_2003_server*cpe:2.3:o:microsoft:windows_2003_server:*:sp2:*:*:*:*:*:*
microsoftwindows_2003_server*cpe:2.3:o:microsoft:windows_2003_server:*:sp2:*:*:*:*:itanium:*
microsoftwindows_2003_server*cpe:2.3:o:microsoft:windows_2003_server:*:sp2:*:*:*:*:x64:*
microsoftwindows_xp*cpe:2.3:o:microsoft:windows_xp:*:*:*:*:*:*:x64:*
Rows per page:
1-10 of 131

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.677

Percentile

98.0%