6.9

CVE-2015-2378

Untrusted search path vulnerability in Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel Viewer 2007 SP3, and Office Compatibility Pack SP3 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka "Microsoft Excel DLL Remote Code Execution Vulnerability."

Data is provided by the National Vulnerability Database (NVD)
MicrosoftExcel Version2007 Updatesp3
MicrosoftExcel Version2010 Updatesp2 HwPlatformx64
MicrosoftExcel Version2010 Updatesp2 HwPlatformx86
MicrosoftExcel Viewer Version2007 Updatesp3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.19% 0.905
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.9 3.4 10
AV:L/AC:M/Au:N/C:C/I:C/A:C