Lucene search

K
nvd[email protected]NVD:CVE-2009-1134
HistoryJun 10, 2009 - 6:30 p.m.

CVE-2009-1134

2009-06-1018:30:00
CWE-94
web.nvd.nist.gov

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.768 High

EPSS

Percentile

98.2%

Excel in 2007 Microsoft Office System SP1 and SP2; Microsoft Office Excel Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allow remote attackers to execute arbitrary code via a BIFF file with a malformed Qsir (0x806) record object, aka β€œRecord Pointer Corruption Vulnerability.”

Affected configurations

NVD
Node
microsoftofficeMatch2004mac
OR
microsoftofficeMatch2008mac
OR
microsoftofficeMatchxpsp3
OR
microsoftoffice_compatibility_pack_for_word_excel_ppt_2007sp1
OR
microsoftoffice_compatibility_pack_for_word_excel_ppt_2007sp2
OR
microsoftoffice_excelMatch2000sp3
OR
microsoftoffice_excelMatch2003sp3
OR
microsoftoffice_excelMatch2007sp1
OR
microsoftoffice_excelMatch2007sp2
OR
microsoftoffice_excel_viewer
OR
microsoftoffice_excel_viewerMatch2003sp3
OR
microsoftoffice_sharepoint_serverMatch2007sp1x32
OR
microsoftoffice_sharepoint_serverMatch2007sp1x64
OR
microsoftoffice_sharepoint_serverMatch2007sp2x32
OR
microsoftoffice_sharepoint_serverMatch2007sp2x64
OR
microsoftopen_xml_file_format_convertermac

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.4 High

AI Score

Confidence

Low

0.768 High

EPSS

Percentile

98.2%