CVE-2000-0088Authentication Bypass by Primary Weakness in Microsoft Word

Severity
7.2HIGHNVD
EPSS
0.5%
top 33.44%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 20
Latest updateApr 30

Description

Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malformed Conversion Data" vulnerability.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages4 packages

NVDmicrosoft/word2000, 97, 98+2
NVDmicrosoft/office2000, 97+1
NVDmicrosoft/powerpoint2000, 97+1

🔴Vulnerability Details

2
GHSA
GHSA-v953-3rp8-5v5v: Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malform2022-04-30
CVEList
CVE-2000-0088: Buffer overflow in the conversion utilities for Japanese, Korean and Chinese Word 5 documents allows an attacker to execute commands, aka the "Malform2000-03-22

📐Framework References

1
CWE
Authentication Bypass by Primary Weakness
CVE-2000-0088 — Microsoft Word vulnerability | cvebase