Lucene search

K
saintSAINT CorporationSAINT:5A177D8613AF0B419D756AEFC4970DD5
HistoryJun 21, 2006 - 12:00 a.m.

Microsoft Excel URL unicode buffer overflow

2006-06-2100:00:00
SAINT Corporation
my.saintcorporation.com
21

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.415

Percentile

97.3%

Added: 06/21/2006
CVE: CVE-2006-3086
BID: 18500
OSVDB: 26666

Background

Microsoft Excel, part of the Microsoft Office product suite, is a spreadsheet application for Windows platforms.

Problem

A buffer overflow in Excel when processing long URL strings allows command execution when a user clicks on a specially crafted link within a spreadsheet.

Resolution

Do not open Excel files from untrusted sources.

References

<http://archives.neohapsis.com/archives/fulldisclosure/2006-06/0391.html&gt;

Limitations

Exploit works on Microsoft Excel 2002. In order for exploitation to occur, a user must download and open the exploit file and click on the Click Here link. Note that on Windows XP, a pop-up window comes up after the click, and the user must click on either button to trigger the exploit.

Platforms

Windows 2000
Windows XP

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.415

Percentile

97.3%