9.3

CVE-2009-0087

Unspecified vulnerability in the Word 6 text converter in WordPad in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2; and the Word 6 text converter in Microsoft Office Word 2000 SP3 and 2002 SP3; allows remote attackers to execute arbitrary code via a crafted Word 6 file that contains malformed data, aka "WordPad and Office Text Converter Memory Corruption Vulnerability."

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftOffice Word Version2000 Updatesp3
MicrosoftOffice Word Version2002 Updatesp3
MicrosoftWindows 2000 Version- Updatesp4
MicrosoftWindows 2003 Server HwPlatformx64
MicrosoftWindows 2003 Server Updatesp1 HwPlatformitanium
MicrosoftWindows 2003 Server Updatesp2 HwPlatformitanium
MicrosoftWindows 2003 Server Updatesp2 HwPlatformx64
MicrosoftWindows Xp HwPlatformx64
MicrosoftWindows Xp Updatesp2
MicrosoftWindows Xp Updatesp2 HwPlatformx64
MicrosoftWindows Xp Updatesp3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 60.58% 0.982
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C