Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2006-6561

6 documents6 sources
Severity
9.3CRITICAL
EPSS
71.4%
top 1.28%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedDec 14
Latest updateMay 1

Description

Unspecified vulnerability in Microsoft Word 2000, 2002, and Word Viewer 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted DOC file that triggers memory corruption, as demonstrated via the 12122006-djtest.doc file, a different issue than CVE-2006-5994 and CVE-2006-6456.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages4 packages

NVDmicrosoft/word2000, 2002, 2003+2
NVDmicrosoft/works2004, 2005, 2006+2
NVDmicrosoft/office4 versions+3

🔴Vulnerability Details

3
GHSA
GHSA-q2rf-7vjv-wx6h: Unspecified vulnerability in Microsoft Word 2000, 2002, and Word Viewer 2003 allows user-assisted remote attackers to execute arbitrary code via a cra2022-05-01
CVEList
CVE-2006-6561: Unspecified vulnerability in Microsoft Word 2000, 2002, and Word Viewer 2003 allows user-assisted remote attackers to execute arbitrary code via a cra2006-12-14
VulnCheck
Microsoft Word Count Vulnerability2006

💥Exploits & PoCs

1
Exploit-DB
Microsoft Word Document - Malformed Pointer (PoC)2006-12-12

📋Vendor Advisories

1
Red Hat
CVE-2006-6628: Integer overflow in OpenOffice
CVE-2006-6561 (CRITICAL CVSS 9.3) | Unspecified vulnerability in Micros | cvebase.io