cbcvebase.
CVE-2007-0515
published 2007-01-26

CVE-2007-0515: Unspecified vulnerability in Microsoft Word allows user-assisted remote attackers to execute arbitrary code on Word 2000, and cause a denial of service on Word…

PriorityP268critical9.3CVSS 2.0
AVNACMAuNCCICAC
ITWEXPLOITVulnCheck KEV
Exploited in the wild
EPSS
38.16%
98.4th percentile
Unspecified vulnerability in Microsoft Word allows user-assisted remote attackers to execute arbitrary code on Word 2000, and cause a denial of service on Word 2003, via unknown attack vectors that trigger memory corruption, as exploited by Trojan.Mdropper.W and later by Trojan.Mdropper.X, a different issue than CVE-2006-6456, CVE-2006-5994, and CVE-2006-6561.

Affected

11 ranges
VendorProductVersion rangeFixed in
microsoftoffice
microsoftoffice
microsoftoffice
microsoftoffice
microsoftword
microsoftword
microsoftword
microsoftword_viewer
microsoftworks
microsoftworks
microsoftworks

Detection & IOCsextracted from sources · hover to see the quote

urlhttps://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/29524.doc
filename02032007-word2000exp.doc
  • Malicious Word 2000 (.doc) file exploiting a malformed string/function to corrupt memory and execute arbitrary code; flag suspicious .doc files opened by Word 2000 (version 9.0.2720) that spawn CMD.EXE as a child process.
  • Exploit attempts against Word 2003/XP manifest as 100% CPU consumption (denial of service) rather than code execution — high CPU on WINWORD.EXE opening a .doc can indicate exploitation attempt.
  • Signature family reference: track detections under the Exploit-MS06-027 variant family for this Word 2000 code-execution issue.
  • ·At time of exploit publication no patch was available (zero-day); verify current patch status before relying solely on signature-based detection.

CVSS provenance

nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vulncheck9.3CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.