9.3
CVE-2015-2558
- EPSS 48.81%
- Published 14.10.2015 01:59:13
- Last modified 12.04.2025 10:46:40
- Source secure@microsoft.com
- Teams watchlist Login
- Open Login
Use-after-free vulnerability in Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 RT SP1, Excel 2016, Excel for Mac 2011, Excel 2016 for Mac, Excel Viewer, Office Compatibility Pack SP3, and Excel Services on SharePoint Server 2007 SP3, 2010 SP2, and 2013 SP1 allows remote attackers to execute arbitrary code via a long fileVersion element in an Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Excel For Mac Version2011
Microsoft ≫ Excel For Mac Version2016
Microsoft ≫ Office Compatibility Pack Updatesp3
Microsoft ≫ Office Sharepoint Server Version2007 Updatesp3 Editionx32
Microsoft ≫ Office Sharepoint Server Version2007 Updatesp3 Editionx64
Microsoft ≫ Sharepoint Server Version2010 Updatesp2
Microsoft ≫ Sharepoint Server Version2013 Updatesp1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 48.81% | 0.977 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|