cbcvebase.
CVE-2006-0009
published 2006-03-14

CVE-2006-0009: Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing…

medium5.1CVSS 3.1
AVNACHAuNCPIPAP
Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing slip that is longer than specified by the provided length field, as exploited by malware such as TROJ_MDROPPER.BH and Trojan.PPDropper.E in attacks against PowerPoint.

Affected

12 ranges
VendorProductVersion rangeFixed in
microsoftoffice
microsoftoffice
microsoftoffice
microsoftoffice
microsoftoffice
microsoftworks
microsoftworks
microsoftworks
microsoftworks
microsoftworks
microsoftworks
microsoftworks

CVSS provenance

nvd5.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
vulncheck5.1MEDIUM