9.3

CVE-2009-0560

Excel in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP3, and Office 2004 and 2008 for Mac; Excel in 2007 Microsoft Office System SP1 and SP2; Open XML File Format Converter for Mac; Microsoft Office Excel Viewer 2003 SP3; Microsoft Office Excel Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allow remote attackers to execute arbitrary code via a crafted Excel file with a malformed record object, aka "Field Sanitization Memory Corruption Vulnerability."

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftOffice Version2004 Editionmac
MicrosoftOffice Version2008 Editionmac
MicrosoftOffice Versionxp Updatesp3
MicrosoftOffice Excel Version2000 Updatesp3
MicrosoftOffice Excel Version2003 Updatesp3
MicrosoftOffice Excel Version2007 Updatesp1
MicrosoftOffice Excel Version2007 Updatesp2
MicrosoftOffice Excel Viewer Version2003 Updatesp3
MicrosoftOffice Sharepoint Server Version2007 Updatesp1 Editionx32
MicrosoftOffice Sharepoint Server Version2007 Updatesp1 Editionx64
MicrosoftOffice Sharepoint Server Version2007 Updatesp2 Editionx32
MicrosoftOffice Sharepoint Server Version2007 Updatesp2 Editionx64
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 66.82% 0.984
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C