cbcvebase.
CVE-2003-0820
published 2003-12-15

CVE-2003-0820: Microsoft Word 97, 98(J), 2000, and 2002, and Microsoft Works Suites 2001 through 2004, do not properly check the length of the "Macro names" data value, which…

PriorityP339high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
25.73%
97.7th percentile
Microsoft Word 97, 98(J), 2000, and 2002, and Microsoft Works Suites 2001 through 2004, do not properly check the length of the "Macro names" data value, which could allow remote attackers to execute arbitrary code via a buffer overflow attack.

Affected

8 ranges
VendorProductVersion rangeFixed in
microsoftword
microsoftword
microsoftword
microsoftword
microsoftworks
microsoftworks
microsoftworks
microsoftworks
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.